Skip to main content

npm-trusted-publishing

Facilitates secure npm publishing via GitHub Actions using OIDC for trusted publishing and provenance attestations.

Install this skill

or
97/100

Security score

The npm-trusted-publishing skill was audited on Mar 4, 2026 and we found 3 security issues across 1 threat category. Review the findings below before installing.

Categories Tested

Security Issues

low line 46

External URL reference

SourceSKILL.md
46registry-url: "https://registry.npmjs.org"
low line 95

External URL reference

SourceSKILL.md
95npm error 404 Not Found - PUT https://registry.npmjs.org/@scope%2fpackage - Not found
low line 104

External URL reference

SourceSKILL.md
104registry-url: "https://registry.npmjs.org"
Scanned on Mar 4, 2026
View Security Dashboard