managing-k8s-cert-manager-deep
Pass
Audited by Gen Agent Trust Hub on Apr 12, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes kubectl commands to interact with the Kubernetes API for resource discovery and status analysis. Evidence: SKILL.md contains shell scripts that use kubectl get to retrieve metadata for deployments, pods, certificates, issuers, challenges, and orders. Scope: All commands are limited to information retrieval and log viewing (kubectl logs), following a discovery-first pattern to ensure resource existence before inspection.
- [SAFE]: The skill does not contain any detected malicious patterns or security vulnerabilities. It focuses on Kubernetes resource metadata and system logs related to certificate management. No access to sensitive files (e.g., .ssh, .aws, .env), hardcoded credentials, or external network requests were found. The scripts use standard utilities like jq, grep, and date for data processing without dynamic execution or obfuscation.
Audit Metadata