Install the "github-actions-validator" agent skill from https://github.com/akin-ozer/cc-devops-skills/tree/main/devops-skills-plugin/skills/github-actions-validator into .claude/skills/github-actions-validator/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "github-actions-validator", then confirm the skill loads.
Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Type this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
skills CLI
$ npx skills add akin-ozer/cc-devops-skills --skill github-actions-validator -a codex
Project install goes to .agents/skills/; add -g for ~/.codex/skills/.
Install the "github-actions-validator" agent skill from https://github.com/akin-ozer/cc-devops-skills/tree/main/devops-skills-plugin/skills/github-actions-validator into .agents/skills/github-actions-validator/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "github-actions-validator", then confirm the skill loads.
Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
skills CLI
$ npx skills add akin-ozer/cc-devops-skills --skill github-actions-validator -a cursor
Project install goes to .agents/skills/; add -g for ~/.cursor/skills/.
Install the "github-actions-validator" agent skill from https://github.com/akin-ozer/cc-devops-skills/tree/main/devops-skills-plugin/skills/github-actions-validator into .cursor/skills/github-actions-validator/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "github-actions-validator", then confirm the skill loads.
Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
skills CLI
$ npx skills add akin-ozer/cc-devops-skills --skill github-actions-validator -a gemini-cli
Project install goes to .agents/skills/; add -g for ~/.gemini/skills/.
Install the "github-actions-validator" agent skill from https://github.com/akin-ozer/cc-devops-skills/tree/main/devops-skills-plugin/skills/github-actions-validator into .gemini/skills/github-actions-validator/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "github-actions-validator", then confirm the skill loads.
Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Installs for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
skills CLI
$ npx skills add akin-ozer/cc-devops-skills --skill github-actions-validator -a github-copilot
Project install goes to .agents/skills/; add -g for ~/.copilot/skills/.
Install the "github-actions-validator" agent skill from https://github.com/akin-ozer/cc-devops-skills/tree/main/devops-skills-plugin/skills/github-actions-validator into .github/skills/github-actions-validator/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "github-actions-validator", then confirm the skill loads.
GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
skills CLI
$ npx skills add akin-ozer/cc-devops-skills --skill github-actions-validator -a opencode
OpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
Install the "github-actions-validator" agent skill from https://github.com/akin-ozer/cc-devops-skills/tree/main/devops-skills-plugin/skills/github-actions-validator into .opencode/skills/github-actions-validator/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "github-actions-validator", then confirm the skill loads.
OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Works in 12 steps: Set Skill Path and Run Validation → Map Each Error to a Reference → Apply Minimal-Quote Policy → …
Tasks that involve CI/CD
SKILL.md covers Overview, Trigger Phrases, When to Use This Skill and Required Execution Flow, plus 6 more sections
Runs Shell scripts from its folder; calls bash, git and actionlint
What it does
GitHub Actions Validator is an agent skill from akin-ozer/cc-devops-skills. Validate, lint, audit, fix GitHub Actions workflows (.github/workflows).
Its SKILL.md is about 4.7k tokens, which your agent loads only when the skill is triggered. The skill folder holds 18 other files, including scripts and reference files (for example `examples/README.md`, `examples/outdated-versions.yml` and `examples/valid-ci.yml`).
It sits in DevOps & Cloud, covering CI/CD. It works with GitHub Actions. The repository describes itself as: DevOps skills for Claude Code and Codex. The licence is Apache-2.0.
When your agent uses it
Tasks that involve CI/CD
Example prompts
“/github-actions-validator”
Requirements
A Bash shell
Docker
Workflow steps
12 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 276af75. It shows what the files ask for, not the result of running them.
Tool permissions
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Runs code
Ships 2 files in scripts/ (Shell), which the agent can run.
Shell commands in SKILL.md call:
bash
git
actionlint
From the folder's file list and the shell code blocks in SKILL.md.
Network
No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Credentials
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Context cost
GitHub Actions Validator loads about 4.7k tokens when it runs, and up to ~15k if it reads all its reference files. Until then it costs about 24 tokens; SKILL.md has 1,662 words of instructions outside code blocks.
Always· name and description, kept in context so the agent knows when to use it
~24
When it runs· the whole SKILL.md, loaded when a task matches
~4.7k
With references· SKILL.md plus every file in references/, read only if the agent opens them
~15k
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
Safety
Auto-check passed
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
Download SKILL.mdSave it as .claude/skills/github-actions-validator/SKILL.md (or your agent's skills folder). This skill also uses 14 other files; get the full folder from GitHub.
Validate and test GitHub Actions workflows, custom actions, and public actions using industry-standard tools (actionlint and act). This skill provides comprehensive validation including syntax checking, static analysis, local workflow execution testing, and action verification with version-aware documentation lookup.
Trigger Phrases
Use this skill when the request includes phrases like:
"validate this GitHub Actions workflow"
"check my .github/workflows/*.yml file"
"debug actionlint errors"
"test this workflow locally with act"
"verify GitHub Action versions or deprecations"
When to Use This Skill
Use this skill when:
Validating workflow files: Checking .github/workflows/*.yml for syntax errors and best practices
Testing workflows locally: Running workflows with act before pushing to GitHub
Debugging workflow failures: Identifying issues in workflow configuration
Validating custom actions: Checking composite, Docker, or JavaScript actions
Verifying public actions: Validating usage of actions from GitHub Marketplace
Pre-commit validation: Ensuring workflows are valid before committing
Required Execution Flow
Every validation run should follow these steps in order.
Step 1: Set Skill Path and Run Validation
Run commands from the repository root that contains .github/workflows/.
[ERROR] invalid CRON format "0 0 * * 8"
[ERROR] label "ubuntu-lastest" is unknown
[WARN] "github.event.issue.title" is potentially untrusted
[ERROR] job "deploy" needs job "biuld" which does not exist
Step 2-3: Consult References and Quote Fixes
Error 1: Invalid CRON Expression
From references/common_errors.md - Schedule Errors:
Cause: Day of week 8 doesn't exist (valid: 0-6, where 0 = Sunday)
yaml
# Bad
schedule:
- cron: '0 0 * * 8' # Day 8 doesn't exist
# Good
schedule:
- cron: '0 0 * * 0' # Sunday
CRON format:minute hour day month weekday
Weekday: 0-6 (0 = Sunday)
Fix: Change 8 to 0 (Sunday) or 1-6 for Monday-Saturday.
Error 2: Invalid Runner Label
From references/common_errors.md - Job Configuration Errors and references/runners.md:
Cause: Typo in runner label
yaml
# Bad
runs-on: ubuntu-lastest # Typo
# Good
runs-on: ubuntu-latest
Valid labels (from references/runners.md):
ubuntu-latest (Ubuntu 24.04)
ubuntu-24.04, ubuntu-22.04
macos-latest (macOS 15)
windows-latest (Windows Server 2022)
Fix: Change ubuntu-lastest to ubuntu-latest.
Error 3: Outdated Action Version
From references/action_versions.md:
Action
Current Version
Minimum Supported
actions/checkout
v6
v4
SHA Pinning Best Practice:
yaml
# Recommended: SHA pinning with version comment
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
Fix: Update from @v3 to @v6 (or SHA-pinned version).
GitHub Actions Validator next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
GitHub Actions Validator compared with similar skills
Skill
Stars
Used in
Tokens
Auto-check
Licence
Repo updated
GitHub Actions Validator this skillakin-ozer/cc-devops-skills
Scheduled CI skill that scans a repository for small, certain docs, test and code hygiene issues and fixes them on one branch with a commit per finding.
Diagnoses failing CI pipelines and tests, deciding first whether the test or the implementation is at fault, and hands hard cases to a dedicated fixer subagent.
Validate, lint, audit, fix GitHub Actions workflows (.github/workflows). GitHub Actions Validator is an agent skill from akin-ozer/cc-devops-skills.github/workflows).
When should I use GitHub Actions Validator?
GitHub Actions Validator fits situations like: tasks that involve CI/CD.
How do I install GitHub Actions Validator in Claude Code?
Run `npx skills add akin-ozer/cc-devops-skills --skill github-actions-validator -a claude-code`. Or copy the skill folder (devops-skills-plugin/skills/github-actions-validator in akin-ozer/cc-devops-skills) into .claude/skills/github-actions-validator in your project. Claude Code loads it when a task matches its description.
How do I install GitHub Actions Validator in Codex?
Run `npx skills add akin-ozer/cc-devops-skills --skill github-actions-validator -a codex`. Or copy the skill folder (devops-skills-plugin/skills/github-actions-validator in akin-ozer/cc-devops-skills) into .agents/skills/github-actions-validator in your project. Codex loads it when a task matches its description.
Can I use GitHub Actions Validator in Cursor, Gemini CLI or GitHub Copilot?
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add akin-ozer/cc-devops-skills --skill github-actions-validator -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/github-actions-validator, .gemini/skills/github-actions-validator, .github/skills/github-actions-validator and .opencode/skills/github-actions-validator in your project.
What does GitHub Actions Validator need to run?
Going by SKILL.md and its folder, GitHub Actions Validator needs a shell for the scripts in its folder and the command-line tools its instructions call (bash, git and actionlint). Our summary lists: A Bash shell; Docker.
Does GitHub Actions Validator access the network?
SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Is GitHub Actions Validator safe to install?
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
What licence does GitHub Actions Validator use?
GitHub Actions Validator is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
How many tokens does GitHub Actions Validator use?
About 4.7k tokens (SKILL.md is roughly 19k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 11k tokens, read only when the agent opens those files.
What are the alternatives to GitHub Actions Validator?
Skills that share tags, products or a category with GitHub Actions Validator: Analyze GitHub Action Logs (withastro/astro, 63k stars), GitHub Actions Templates (bartstc/vite-ts-react-template, 122 stars), Nushell (ccusage/ccusage, 19k stars) and Repo Hygiene Scan and Fix (QwenLM/qwen-code, 28k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Who maintains GitHub Actions Validator?
akin-ozer (a GitHub user) maintains it in akin-ozer/cc-devops-skills, which has 319 GitHub stars. The repository holds 30 skills in this directory. The repository was last updated on July 26, 2026.
Source: akin-ozer/cc-devops-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.