cicd-posture

Pass

Audited by Gen Agent Trust Hub on Jun 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill utilizes the endorctl and gh command-line tools to gather security findings and configuration evidence. These operations are strictly limited to read-only API lookups, with explicit guardrails prohibiting mutating actions like code changes, PR creation, or triggering workflow dispatches.
  • [SAFE]: The skill accesses the local Endor configuration (~/.endorctl/config.yaml) solely to identify the active namespace. It contains rigorous instructions forbidding the agent from displaying or leaking credentials, secrets, or the full contents of any configuration files.
  • [SAFE]: The instructions incorporate a defense-in-depth approach to indirect prompt injection by explicitly categorizing repository metadata, workflow files, and command outputs as untrusted data that cannot override or influence the agent's logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 16, 2026, 06:47 PM
Security Audit — agent-trust-hub — cicd-posture