maintainer-ci-audit
Emasoft/ai-maestro-maintainer-agentAudit and harden non-GitHub CI in an entrusted repo — GitLab CI, Jenkins, and Azure Pipelines. Flags unmasked secrets, unprotected branches and tags,…
Scores out of 100 · grade B+
2026-08-15Works
40% of the score100/100
- Loads cleanly: valid frontmatter, required fields present, no dangling references.
Maintained
25% of the score100/100
- no commits in the last 12 weeks
Adopted
20% of the score4/100
- 1 stars on the source repo.
Documented
15% of the score90/100
- 2,082 words with worked examples.
- Ships 4 bundled files.
Install
npx skills add Emasoft/ai-maestro-maintainer-agent/maintainer-ci-auditWhat it says it does
Audit and harden non-GitHub CI in an entrusted repo — GitLab CI, Jenkins, and Azure Pipelines. Flags unmasked secrets, unprotected branches and tags, untrusted or privileged runners, broken job gating, artifact and cache poisoning, unpinned images, Groovy sandbox hazards, and untrusted shared libraries or service connections. Modes: scan, harden, gate. Trigger with "audit our GitLab CI", "harden this Jenkinsfile", "is azure-pipelines.yml secure", "check .gitlab-ci.yml for secrets", or "review our Jenkins shared library". GitHub Actions is out of scope — that is workflow-scan.
Also in Emasoft/ai-maestro-maintainer-agent
| Artifact | Score | What the check found | Type | Reach | Last commit |
|---|---|---|---|---|---|
| maintainer-dockerfile-auditEmasoft/ai-maestro-maintainer-agent | clean | Skill | 1 stars | today | |
| maintainer-iac-auditEmasoft/ai-maestro-maintainer-agent | clean | Skill | 1 stars | today | |
| maintainer-observability-auditEmasoft/ai-maestro-maintainer-agent | clean | Skill | 1 stars | today | |
| maintainer-shell-auditEmasoft/ai-maestro-maintainer-agent | clean | Skill | 1 stars | today | |
| maintainer-k8s-auditEmasoft/ai-maestro-maintainer-agent | clean | Skill | 1 stars | today | |
| maintainer-commit-msg-whyEmasoft/ai-maestro-maintainer-agent | No name | Skill | 1 stars | today |
Other git & workflow skills
Browse all| Artifact | Score | What the check found | Category | Reach | Last commit |
|---|---|---|---|---|---|
| finishing-a-development-branchobra/superpowers | clean | Git & workflow | 167,156 installs | 2 days ago | |
| using-git-worktreesobra/superpowers | clean | Git & workflow | 170,252 installs | 2 days ago | |
| git-guardrails-claude-codemattpocock/skills | clean | Git & workflow | 252,653 installs | today | |
| github-issuesgithub/awesome-copilot | clean | Git & workflow | 14,854 installs | today | |
| setup-pre-commitmattpocock/skills | clean | Git & workflow | 245,932 installs | today | |
| commitmicrosoft/vscode | clean | Git & workflow | 189k stars | today |
Put this measurement in your README
A badge carrying how many listings this index holds from the repository and how many pass every static structural check. It reads from this index every time somebody loads your page, so it changes when the measurement changes and there is nothing to keep up to date. Free, no account, and the value is not something you or we can set by hand.
[](https://skillworks.kynth.studio/?q=Emasoft%2Fai-maestro-maintainer-agent)Would rather not hotlink us? Every badge is also served in shields.io’s endpoint schema, so shields renders the image and your readers never talk to our domain:
Published by Toolproof, the masthead over this index and eight others. The method behind the number is at toolproof.kynth.studio/methodology, and the whole thing is readable as JSON with no key at /api.
