All skills
oaustegard avatar

/accessing-github-repos

@6154d36

GitHub repository access in containerized environments using REST API and credential detection. Use when git clone fails, or when accessing private repos/writing files via API.

Use this Skill: https://skilld.dev/gh/oaustegard/claude-skills/accessing-github-repos

This session only. Nothing lands on disk.

CHANGELOG.md

≈322 tokens on demand. Your agent reads this file only when SKILL.md points to it.

accessing-github-repos - Changelog

All notable changes to the accessing-github-repos skill are documented in this file. The format is based on Keep a Changelog.

[2.0.0] - 2026-01-06

Added

  • Rename git-in-containers to accessing-github-repos with credential-aware API

[2.0.0] - 2026-01-06

Changed

  • BREAKING: Renamed skill from git-in-containers to accessing-github-repos (gerund naming convention)
  • Complete rewrite with credential-aware API access
  • Smart PAT detection from environment variables and project .env files
  • Added comprehensive Python helper functions for GitHub API operations
  • Added support for private repositories with authentication
  • Added file push/update capabilities via GitHub API
  • Expanded documentation with both Python and Bash examples

Added

  • Credential detection function (get_github_auth())
  • File fetching with automatic API/raw URL selection
  • Repository tarball download support
  • File create/update via GitHub API
  • File SHA retrieval for updates
  • Rate limiting documentation
  • Capability matrix by auth level

[1.0.0] - 2026-01-02

Added

  • Initial git-in-containers skill
  • Basic raw.githubusercontent.com workarounds
  • Directory tree fetching via GitHub API

Source: SKILL.md on GitHub

1 alert11d4 checks · Risk HIGH
  • Gen Agent Trust Hub11d

    This skill enables an AI agent to interact with GitHub repositories via the REST API. It includes functionality to automatically search for Personal Access Tokens (PATs) within environment variables and sensitive local configuration files such as .env and github.env. While it primarily targets well-known services, the automated harvesting of credentials and the capability to transmit local data to remote repositories present significant security risks regarding data exposure and potential exfiltration.

  • Socket11d

    No alerts

  • Snyk11d

    Risk: MEDIUM · 1 issue

  • Runlayer7mo

    3/3 files flagged

Signed by skilld at 6154d36. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated 3 months ago
metadata
{
  "version": "2.0.0"
}

README badge

README badge for oaustegard/claude-skills/accessing-github-repos