skills/cosmix/claude-loom/loom-ci-cd/Gen Agent Trust Hub

loom-ci-cd

Pass

Audited by Gen Agent Trust Hub on Apr 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is instructional in nature and provides templates and best practices for CI/CD automation. It consistently recommends secure practices such as the use of secret vaults, least privilege principles, and the integration of automated security scanning tools (SAST, DAST, and dependency checks).
  • [EXTERNAL_DOWNLOADS]: The pipeline examples reference several well-known third-party GitHub Actions and utilities (e.g., GitHub CodeQL, Snyk, Trivy, SonarCloud, and official actions from Docker, Azure, and AWS). These references are used for standard build, test, and deployment tasks within the context of CI/CD workflows.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 23, 2026, 11:40 AM