trigger-config

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONDYNAMIC_EXECUTIONPRIVILEGE_ESCALATION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill documents the use of aptGet and additionalPackages extensions to install system utilities and CLI tools (e.g., imagemagick, curl, wrangler) during the deployment build process.
  • [COMMAND_EXECUTION]: The pythonExtension facilitates the installation of Python dependencies from a requirements.txt file and execution of scripts.
  • [DYNAMIC_EXECUTION]: The skill documents the python.runInline method, which allows for the execution of arbitrary Python code strings at runtime within Trigger.dev tasks.
  • [PRIVILEGE_ESCALATION]: A custom extension example in references/config.md demonstrates using chmod +x to modify file permissions during the build completion phase.
  • [DATA_EXFILTRATION]: The syncEnvVars extension is documented for managing environment variables and secrets, providing a structured way to handle sensitive configuration during deployment.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 03:56 PM
Security Audit — agent-trust-hub — trigger-config