github-token-permissions-overview

Official

Enforce least-privilege GitHub Actions.

Authoradaptive-enforcement-lab
Version1.0.0
Installs0

System Documentation

What problem does it solve?

GitHub Actions workflows often run with too-broad GITHUB_TOKEN permissions. This Skill guides you to enforce explicit, minimal permissions to reduce risk from misconfigurations, accidental exposures, or compromised actions.

Core Features & Use Cases

  • Define and apply least-privilege permission policies to GitHub workflows.
  • Provide practical examples and templates for common CI, PR, and deployment scenarios.
  • Help security teams and software engineers mitigate risk by documenting and enforcing minimal scopes.

Quick Start

Start with a minimal permissions block in your workflow and escalate only as failures demand.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: github-token-permissions-overview
Download link: https://github.com/adaptive-enforcement-lab/claude-skills/archive/main.zip#github-token-permissions-overview

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.