runpod
Pass
Audited by Gen Agent Trust Hub on Aug 6, 2026
Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
- [DATA_EXFILTRATION]: The skill enforces security best practices for credential management. It provides clear instructions to avoid hardcoding the
RUNPOD_API_KEYand includes a validation script (scripts/verify.sh) that uses regular expressions to detect and fail if literal API key assignments are found in the source code. - [COMMAND_EXECUTION]: The skill includes a shell-based utility,
scripts/verify.sh, designed for local static analysis of worker configurations. The script uses standard Unix tools such asfind,grep, andxargsto verify project structure and settings without performing network operations or executing untrusted code. - [SAFE]: The external resources referenced, including the
runpodPython SDK and therunpodctlCLI, are official tools for a well-known service. The skill's primary focus is on operational efficiency and budget safety for GPU compute tasks.
Audit Metadata