deco-site-deployment

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses kubectl to interact with Kubernetes clusters and curl to trigger redeployments via API endpoints. The use of these tools is aligned with the skill's stated purpose of managing site deployments.
  • [CREDENTIALS_UNSAFE]: The skill explicitly instructs the user not to hardcode the ADMIN_API_KEY and provides a shell template to verify that the key is provided via an environment variable (ADMIN_API_KEY), which is a recommended practice for handling secrets in automation scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 06:53 AM
Security Audit — agent-trust-hub — deco-site-deployment