Loading skill
Install any skill in seconds. Free to start, no credit card required.
Get Started Free →Enforces GitHub Actions security and compliance for this monorepo. Use when adding third-party actions, handling secrets, defining permissions, and reviewing CI security trade-offs.
| Test case | Without → With | Effect | Δ tokens | Δ turns |
|---|---|---|---|---|
| case-01 | ✗→✓ | ▲ Improved | -23% | 0% |
| case-02 | ✗→✓ | ▲ Improved | 34% | 0% |
| case-03 | ✗→✓ | ▲ Improved | -35% | 0% |
| case-09 | ✗→✓ | ▲ Improved | -15% | 0% |
| case-10 | ✗→✓ | ▲ Improved | -30% | 0% |
Consult docs/monorepo-docs/ci.md before decisions.
docs/monorepo-docs/ci.md (CI Security section).Never silently drop unapproved but relevant options.
Start with:
yamlpermissions: {}
Add only required scopes.
Vault is mandatory. GitHub Secrets are only for Vault bootstrap values:
VAULT_ADDRVAULT_ROLE_IDVAULT_SECRET_IDcurl | bashreferences/approved-actions.mdOther measured skills in the registry, with their headline benchmark lift.