docker-security-hardening
Pass
Audited by Gen Agent Trust Hub on Mar 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or data exfiltration attempts were found. The skill is purely defensive and focuses on enforcing container security best practices.\n- [COMMAND_EXECUTION]: The skill provides scripts (
block-dangerous-docker-commands.shanddockerfile-security-check.sh) intended for use as PreToolUse hooks. These scripts monitor agent commands and file edits to block insecure operations, representing a security-enhancing use of command execution.\n- [EXTERNAL_DOWNLOADS]: The provided CI/CD templates reference well-known and trusted security tools from organizations such as Aqua Security (Trivy) and Hadolint. These official resources are used appropriately for vulnerability scanning and linting.
Audit Metadata