---
title: "andes-github"
description: "GitHub Actions hardening, CI-efficiency, and runtime-upgrade skills with a report-only workflow reviewer."
canonical: https://agentpluginsdirectory.com/plugins/andes-github
last-updated: 2026-09-28
---

# andes-github
GitHub Actions hardening, CI-efficiency, and runtime-upgrade skills with a report-only workflow reviewer.
- Slug: andes-github
- Publisher: Rodrigo Rojas
- Repository: https://github.com/Andes-Software-Solutions/awesome-claude-copilot
- Manifest: plugins/andes-github/plugin.json
- Version: 1.0.1
- License: MIT
- Category (editorial): other
- Skills: 3 (github-actions-efficiency, github-actions-hardening, github-actions-runtime-upgrade-conventions)
- MCP servers: 0
- Stars: 0
- Repository created: 2026-06-23
- Repository last pushed: 2026-09-28
- Publisher type: Organization
- Listing: https://agentpluginsdirectory.com/plugins/andes-github
- Schema: https://agent-plugins.org/schemas/1.0.0/plugin.schema.json

## Skills

- github-actions-efficiency: Use when auditing or writing GitHub Actions workflows for CI minutes and cost: caching, concurrency, trigger scoping, job and matrix structure, and runner choice.
- github-actions-hardening: Use when writing, reviewing, or hardening GitHub Actions workflows (.github/workflows/*.yml): script injection, pull_request_target/workflow_run escalation, SHA pinning, least-privilege GITHUB_TOKEN, secret exposure, OIDC, and self-hosted runners.
- github-actions-runtime-upgrade-conventions: Use when upgrading GitHub Actions to supported runtimes (Node deprecations, runner images): pick safe action versions, preserve workflow behavior, and validate after the upgrade.

Descriptions come from the frontmatter of each SKILL.md, punctuation lightly normalized.
