Skip to content

chore(warden): Add gha-security-review skill for workflow files#109765

Merged
gricha merged 1 commit into
masterfrom
chore/add-gha-security-review-warden-skill
Mar 3, 2026
Merged

chore(warden): Add gha-security-review skill for workflow files#109765
gricha merged 1 commit into
masterfrom
chore/add-gha-security-review-warden-skill

Conversation

@gricha
Copy link
Copy Markdown
Member

@gricha gricha commented Mar 3, 2026

Add the gha-security-review skill from getsentry/skills as a remote
Warden skill. It reviews GitHub Actions workflows for exploitable
vulnerabilities (pwn requests, expression injection, credential theft,
supply chain attacks).

Scoped to only trigger on changes to .github/workflows/ and
.github/actions/ files.

Agent transcript: https://claudescope.sentry.dev/share/n-Cxb2Cl0Bqa4d51LfYBqua9PH7lSp-NM9siLc3pxY8

Add the gha-security-review skill from getsentry/skills as a remote
Warden skill, scoped to only run on GitHub Actions workflow and action
files (.github/workflows/ and .github/actions/).

Co-Authored-By: Claude <noreply@anthropic.com>

Agent transcript: https://claudescope.sentry.dev/share/Q23IsRZdzQlZAv1jr4AiMC5E9zLdhInWkv1yT6L9XAk
@gricha gricha requested a review from dcramer March 3, 2026 03:07
@gricha gricha marked this pull request as ready for review March 3, 2026 03:07
@gricha gricha merged commit 0754dc7 into master Mar 3, 2026
48 checks passed
@gricha gricha deleted the chore/add-gha-security-review-warden-skill branch March 3, 2026 03:44
@github-actions github-actions Bot locked and limited conversation to collaborators Mar 18, 2026
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants