skills/bnema/opencode-public/gordon/Gen Agent Trust Hub

gordon

Pass

Audited by Gen Agent Trust Hub on Jul 5, 2026

Risk Level: SAFEREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The skill documents an installation method that fetches a shell script from the vendor's domain (https://gordon.bnema.dev/install) and pipes it to bash. This allows for the remote execution of the installation code. This behavior is consistent with the deployment of the CLI tool and the resource originates from the vendor's own domain.
  • [COMMAND_EXECUTION]: The skill details the use of the gordon CLI to manage containerized applications, interact with the local filesystem for configuration (e.g., ~/.config/gordon/), and perform system operations such as viewing logs and managing network services. These operations are core functionalities of the documented platform.
  • [EXTERNAL_DOWNLOADS]: The skill references external code and configurations, including the primary installation script and a GitHub Actions workflow (bnema/gordon/.github/actions/deploy@main). These resources are hosted on the vendor's infrastructure and are necessary for the tool's integration and deployment capabilities.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 5, 2026, 03:23 AM
Security Audit — agent-trust-hub — gordon