Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsBlogPro
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges
  • Chrome Extension
  • Skill Manager

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Pipeline Integrity Review

ASecurity

Review a CI/CD pipeline for supply-chain tampering risk — build isolation, runner/agent trust, secret exposure, mutable dependencies, and poisoned-pipeline (PPE) / unauthorized-workflow paths. Use when hardening GitHub Actions, GitLab CI, Jenkins, or similar against build-system compromise.

8 stars
0 votes
0 copies
1 views
Added 9/19/2026
securityrustgogitci/cdsecurity

Security Analysis

A100/100

Scanned 9/19/2026

$npx -y skills add jassics/awesome-claude-security --skill pipeline-integrity-review --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Pipeline Integrity Review?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Pipeline Integrity Review
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/jassics-pipeline-integrity-review/badge)](https://www.skillsdirectory.com/skills/jassics-pipeline-integrity-review)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
Files
SKILL.md
---
name: pipeline-integrity-review
description: >-
  Review a CI/CD pipeline for supply-chain tampering risk — build isolation,
  runner/agent trust, secret exposure, mutable dependencies, and poisoned-pipeline
  (PPE) / unauthorized-workflow paths. Use when hardening GitHub Actions, GitLab CI,
  Jenkins, or similar against build-system compromise.
---

# Goal

A CI/CD pipeline that an attacker can't subvert to inject code or steal secrets —
mapped to recognized risks (OWASP Top 10 CI/CD Security Risks, SLSA build track).

# What to review

- **Poisoned Pipeline Execution (PPE)** — can a PR/fork or a config file in the repo
  cause attacker-controlled code to run in a privileged build? `pull_request_target`
  / auto-run on fork PRs with secrets is the classic hole.
- **Runner/agent trust** — shared/self-hosted runners reused across trust levels;
  ephemeral vs. persistent; can one job tamper with the next?
- **Secrets hygiene** — secrets scoped to least privilege, not exposed to fork PRs,
  not printed in logs; OIDC short-lived creds over long-lived tokens.
- **Mutable inputs** — actions/images pinned by digest (not floating tags); third-party
  actions reviewed; base images and toolchains pinned.
- **Identity & permissions** — default token permissions least-privilege; branch
  protection and required reviews; who can modify pipeline definitions.
- **Build isolation & provenance** — hermetic/isolated builds; provenance emitted
  (hand to `artifact-provenance-verification`).

# Steps

1. Map the pipeline: triggers, jobs, runners, secrets, external actions/images,
   deploy steps, and trust boundaries between them.
2. Walk each OWASP CI/CD risk and PPE/injection path; flag where untrusted input
   meets privileged execution or secrets.
3. Check pinning, token scope, runner isolation, and review gates.
4. Recommend fixes prioritized by exploitability (privileged code-exec paths first).

# Output

A findings list (risk · pipeline location · exploit path · fix) mapped to OWASP CI/CD
risks and the SLSA build track, plus quick wins (pin by digest, scope tokens, isolate
fork PRs). Formalize with `security-reporting`.

# Notes

The build system is production: it has the secrets and ships the code, so compromising
CI is often easier and higher-impact than compromising prod. Floating action/image
tags are silent supply-chain risk — pin by digest. `pull_request_target` with secrets
on fork PRs is the single most common critical CI finding.

Attribution

jassicsjassics
View sourceSee grades on GitHubMore from jassics →
SSkills Directory ProSkills Directory

Get any skill into Claude in one click.

Download any skill as a ZIP for Claude.ai, Claude Desktop, or .claude/skills. $9/mo.

See Pro

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills Directory ProSkills Directory

Get any skill into Claude in one click.

Download any skill as a ZIP for Claude.ai, Claude Desktop, or .claude/skills. $9/mo.

See Pro

Related Skills

Security Review

Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. Provides comprehensive security checklist and patterns.

2456590 votes

Springboot Security

Java Spring Boot 服务中关于身份验证/授权、验证、CSRF、密钥、标头、速率限制和依赖安全的 Spring Security 最佳实践。

2456590 votes

Paperclip Evals

Choose, inspect, validate, and report Paperclip Runner or Product E2E evaluations while preserving evidence, provenance, cost, and failure classification.

953190 votes

Paperclip Task Bridge

Create, comment on, update, and list Paperclip tasks from Hermes using scoped Paperclip API credentials.

953190 votes

Summarize Status

Write a short, colloquial summary for a Paperclip summary slot: open with the 1–3 specific, concrete actions the reader needs to take right now to unblock the work, then a brief plain-language status, streaming progress as it works.

953190 votes
View all in security →