orbstack-best-practices
Pass
Audited by Gen Agent Trust Hub on Aug 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides documentation for the OrbStack command-line interface and configuration, which is consistent with its stated purpose.
- [COMMAND_EXECUTION]: Mentions standard administrative commands for managing virtual machines and Docker containers, such as
orb createandorb push. These are documented for user guidance. - [CREDENTIALS_UNSAFE]: References the default filesystem path for OrbStack's SSH private key (
~/.orbstack/ssh/id_ed25519) for the purpose of configuring development environments. It does not contain hardcoded secrets or instructions for exfiltration.
Audit Metadata