![Image of the GitHub logo with a blue gradient background](https://github.blog/wp-content/uploads/2023/05/1200.630-Security-wLogo.png?resize=800%2C425)
Four tips to keep your GitHub Actions workflows secure
Researchers from Purdue and NCSU have found a large number of command injection vulnerabilities in the workflows of projects on GitHub. Follow these four tips to keep your GitHub Actions workflows secure.
![Image of the GitHub logo with a blue gradient background](https://github.blog/wp-content/uploads/2023/05/1200.630-Security-wLogo.png?resize=800%2C425)