Skip to content
Back to skills

Restrict Outbound Domains For Github Agentic Workflows Before Repository Agents Can Browse Freely With Gh Aw Firewall

ASecurity

Run GitHub Agentic Workflow jobs behind a domain allowlist and optional API-key sidecar instead of giving repository agents broad outbound access.

  • 36 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added June 2, 2026
ai-agentsgonodedockergitapisecuritydocumentation

Works with

  • api

Security analysis

A100/100

Scanned June 2, 2026

npx -y skills add agentskillexchange/skills --skill restrict-outbound-domains-for-github-agentic-workflows-before-repository-agents-can-browse-freely-with-gh-aw-firewall --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Restrict Outbound Domains For Github Agentic Workflows Before Repository Agents Can Browse Freely With Gh Aw Firewall?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Restrict Outbound Domains For Github Agentic Workflows Before Repository Agents Can Browse Freely With Gh Aw Firewall
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/agentskillexchange-restrict-outbound-domains-for-github-agentic-workf/badge)](https://www.skillsdirectory.com/skills/agentskillexchange-restrict-outbound-domains-for-github-agentic-workf)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: "Restrict outbound domains for GitHub Agentic Workflows before repository agents can browse freely with gh-aw-firewall"
slug: "restrict-outbound-domains-for-github-agentic-workflows-before-repository-agents-can-browse-freely-with-gh-aw-firewall"
description: "Run GitHub Agentic Workflow jobs behind a domain allowlist and optional API-key sidecar instead of giving repository agents broad outbound access."
github_stars: 55
verification: "security_reviewed"
source: "https://github.com/github/gh-aw-firewall"
author: "GitHub"
publisher_type: "organization"
category: "Security & Verification"
framework: "Custom Agents"
tool_ecosystem:
  github_repo: "github/gh-aw-firewall"
  github_stars: 55
---

# Restrict outbound domains for GitHub Agentic Workflows before repository agents can browse freely with gh-aw-firewall

Run GitHub Agentic Workflow jobs behind a domain allowlist and optional API-key sidecar instead of giving repository agents broad outbound access.

## Prerequisites

Docker 20.10+, Docker Compose v2, Linux host or compatible runtime

## Installation

Requirements and caveats from upstream:
- awf runs your command inside a Docker sandbox with three containers:
- **Docker**: 20.10+ with Docker Compose v2
- **Node.js**: 20.19.0+ (for building from source)

Basic usage or getting-started notes:
- **OS**: Ubuntu 22.04+ or compatible Linux distribution (x86_64 and arm64)
- See [Compatibility](docs/compatibility.md) for full details on supported versions and tested configurations.
- ## Get started fast

- Source: https://github.com/github/gh-aw-firewall
- Extracted from upstream docs: https://raw.githubusercontent.com/github/gh-aw-firewall/HEAD/README.md

## Documentation

- https://github.github.com/gh-aw-firewall/

## Source

- [Agent Skill Exchange](https://agentskillexchange.com/skills/restrict-outbound-domains-for-github-agentic-workflows-before-repository-agents-can-browse-freely-with-gh-aw-firewall/)

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…