skills/cosmix/loom/loom-docker/Gen Agent Trust Hub

loom-docker

Pass

Audited by Gen Agent Trust Hub on Jul 25, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references downloading official base images from Docker Hub (e.g., Python, Node.js, Rust, Go) and using vulnerability scanners like Trivy from Aqua Security. These references target well-known services and trusted organizations for legitimate development purposes.
  • [COMMAND_EXECUTION]: Provides standard Docker CLI commands for building, running, and debugging containers. These commands are consistent with the skill's stated purpose as a container expertise tool.
  • [SAFE]: The content explicitly promotes security hardening practices, such as using non-root users, avoiding secrets in Dockerfiles, and employing minimal base images to reduce attack surface.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 25, 2026, 07:34 AM
Security Audit — agent-trust-hub — loom-docker