rollback

Pass

Audited by Gen Agent Trust Hub on Jul 6, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely instructional and does not contain any executable scripts or hidden code. It provides documentation for the Kamal CLI tool.
  • [COMMAND_EXECUTION]: The skill instructs the agent to run standard kamal commands (e.g., kamal app containers, kamal rollback, kamal app version). These commands are used for their intended primary purpose of deployment management and do not involve arbitrary command injection or privilege escalation.
  • [EXTERNAL_DOWNLOADS]: No external code or scripts are downloaded. The skill mentions that Kamal performs rollbacks using images already present on the servers, explicitly stating that nothing is downloaded from a registry during the process.
  • [DATA_EXPOSURE]: The skill suggests reading the local config/deploy.yml file to gain context about the service and registry. This is a standard practice for configuring the deployment tool and does not involve exfiltrating sensitive data to external domains.
  • [PROMPT_INJECTION]: The instructions are clear, descriptive, and do not contain patterns intended to bypass safety filters or override agent behavior.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 6, 2026, 08:37 PM
Security Audit — agent-trust-hub — rollback