terraform-plan-gate-and-policy-as-code

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a procedural guide for infrastructure-as-code (IaC) governance, focusing on pre-merge validation and security checks.
  • [SAFE]: It promotes strong security posture by mandating OIDC/short-lived identities for CI, secret redaction in PR comments, and mandatory secret scanning within the gate.
  • [SAFE]: Tooling references (Terraform, OPA, Checkov, tfsec, Sentinel) are standard industry utilities for operations and security auditing.
  • [SAFE]: Relative file paths point to internal repository standards and architecture definitions, which is expected behavior for a workflow-orchestration skill.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 08:35 AM
Security Audit — agent-trust-hub — terraform-plan-gate-and-policy-as-code