fly-io
Pass
Audited by Gen Agent Trust Hub on Aug 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides guidelines for using the Fly.io platform and its official CLI tool (
flyctl). - [DATA_EXFILTRATION]: The skill demonstrates correct secret management using
fly secrets setand explicitly warns against hardcoding credentials in configuration files or Dockerfiles. Example keys provided are generic placeholders. - [COMMAND_EXECUTION]: The provided
scripts/verify.shscript performs structural checks onfly.tomlfiles usinggrepand the officialflyctlvalidation command if available. This is a standard development utility. - [PROMPT_INJECTION]: The skill includes a surface for processing local configuration data via
scripts/verify.sh(Category 8). - Ingestion points: The
fly.tomlfile specified as an argument toverify.sh(scripts/verify.sh). - Boundary markers: Absent.
- Capability inventory: The script uses
grepfor pattern matching and executesfly config validate(orflyctl) to check the configuration. - Sanitization: None; the script performs read-only structural checks.
Audit Metadata