container-publish
Pass
Audited by Gen Agent Trust Hub on Apr 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides documentation and examples for using the .NET SDK's native container publishing feature without requiring a Dockerfile.
- [SAFE]: External references to GitHub Actions (e.g.,
actions/setup-dotnet,docker/login-action) and container registries (GHCR, Azure Container Registry, Docker Hub) target well-known and trusted services. - [SAFE]: The skill explicitly recommends security-hardened configurations, such as
noble-chiseledbase images to minimize the attack surface and ensuring containers run as non-root users by default. - [SAFE]: No malicious command execution, data exfiltration patterns, or obfuscation techniques were detected in the instructions or code snippets.
Audit Metadata