npm-trusted-publishing
Facilitates secure npm publishing via GitHub Actions using OIDC for trusted publishing and provenance attestations.
Install this skill
or
97/100
Security score
The npm-trusted-publishing skill was audited on Mar 4, 2026 and we found 3 security issues across 1 threat category. Review the findings below before installing.
Categories Tested
Security Issues
low line 46
External URL reference
SourceSKILL.md
| 46 | registry-url: "https://registry.npmjs.org" |
low line 95
External URL reference
SourceSKILL.md
| 95 | npm error 404 Not Found - PUT https://registry.npmjs.org/@scope%2fpackage - Not found |
low line 104
External URL reference
SourceSKILL.md
| 104 | registry-url: "https://registry.npmjs.org" |
Scanned on Mar 4, 2026
View Security DashboardInstall this skill with one command
/learn @pr-pm/npm-trusted-publishing