container-publish

Pass

Audited by Gen Agent Trust Hub on Apr 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides documentation and examples for using the .NET SDK's native container publishing feature without requiring a Dockerfile.
  • [SAFE]: External references to GitHub Actions (e.g., actions/setup-dotnet, docker/login-action) and container registries (GHCR, Azure Container Registry, Docker Hub) target well-known and trusted services.
  • [SAFE]: The skill explicitly recommends security-hardened configurations, such as noble-chiseled base images to minimize the attack surface and ensuring containers run as non-root users by default.
  • [SAFE]: No malicious command execution, data exfiltration patterns, or obfuscation techniques were detected in the instructions or code snippets.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 2, 2026, 05:48 AM
Security Audit — agent-trust-hub — container-publish