skills/alibaba/opc-starter/esa-deploy/Gen Agent Trust Hub

esa-deploy

Pass

Audited by Gen Agent Trust Hub on May 5, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs users to install the esa-cli package globally from the official npm registry, which is a standard procedure for cloud provider CLI tools.
  • [COMMAND_EXECUTION]: The skill uses the esa-cli command-line interface to automate deployment workflows, including authentication, project initialization, and domain management.
  • [SAFE]: Technical documentation within the skill emphasizes the use of GitHub Secrets and GitLab CI variables for sensitive AccessKey and API key management, mitigating the risk of credential exposure.
Audit Metadata
Risk Level
SAFE
Analyzed
May 5, 2026, 06:25 AM
Security Audit — agent-trust-hub — esa-deploy