Catch agent-era CI/CD and permission misconfigurations before shipping with Ship Safe
Run Ship Safe before a release when an agent needs one pre-ship pass for CI/CD misconfigurations, permission risks, secrets exposure, MCP-related hazards, and dependency issues.
What it does
Catch agent-era CI/CD and permission misconfigurations before shipping with Ship Safe
Run Ship Safe before a release when an agent needs one pre-ship pass for CI/CD misconfigurations, permission risks, secrets exposure, MCP-related hazards, and dependency issues.
Prerequisites
Node.js or package runner, repository or CI config to scan
Installation
Use the upstream install or setup path that matches your environment:
- npx ship-safe
- npx ship-safe audit .
- npx ship-safe agent .
- npx ship-safe agent . --severity critical # critical findings only
Basic usage or getting-started notes:
-
bash
-
Interactive REPL — scan, fix, ask questions in one session
-
Full audit: secrets + 23 agents + deps + remediation plan
-
Extracted from upstream docs: https://raw.githubusercontent.com/asamassekou10/ship-safe/HEAD/README.md
Documentation
Source
Capabilities
Install
Quality
deterministic score 0.45 from registry signals: · indexed on github topic:agent-skills · 8 github stars · SKILL.md body (1,122 chars)