About
This skill provides domain-specific guidance for architecting GitHub Actions runner groups based on trust levels, workload requirements, and compliance needs. It helps DevOps engineers and security teams move away from vulnerable 'all-access' runner configurations toward a secure-by-default model, ensuring that sensitive production environments and high-cost resources are strictly isolated. By applying techniques for environment protection and network segmentation, users can significantly reduce the blast radius of potential repository compromises while optimizing resource allocation.