skills/ericrisco/rsc-harness/runpod/Gen Agent Trust Hub

runpod

Pass

Audited by Gen Agent Trust Hub on Aug 6, 2026

Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [DATA_EXFILTRATION]: The skill enforces security best practices for credential management. It provides clear instructions to avoid hardcoding the RUNPOD_API_KEY and includes a validation script (scripts/verify.sh) that uses regular expressions to detect and fail if literal API key assignments are found in the source code.
  • [COMMAND_EXECUTION]: The skill includes a shell-based utility, scripts/verify.sh, designed for local static analysis of worker configurations. The script uses standard Unix tools such as find, grep, and xargs to verify project structure and settings without performing network operations or executing untrusted code.
  • [SAFE]: The external resources referenced, including the runpod Python SDK and the runpodctl CLI, are official tools for a well-known service. The skill's primary focus is on operational efficiency and budget safety for GPU compute tasks.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 6, 2026, 09:37 PM
Security Audit — agent-trust-hub — runpod