terraform-style-guide
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a template and instructional guide for producing high-quality Terraform configuration. It explicitly instructs the agent to avoid hardcoding credentials and to use the
sensitive = trueflag for secrets, which aligns with industry security standards. - [EXTERNAL_DOWNLOADS]: References official documentation from HashiCorp's developer portal (developer.hashicorp.com) to provide authoritative styling guidelines. These references are used for informational purposes and do not involve the execution of remote code.
- [COMMAND_EXECUTION]: Recommends standard infrastructure-as-code validation tools such as
terraform fmt,terraform validate,tflint, andcheckov. These are presented as manual verification steps for the user and are not executed autonomously by the skill. - [DATA_EXPOSURE_AND_EXFILTRATION]: No patterns of data exfiltration were detected. The skill specifically includes a section on version control best practices, advising against committing sensitive state files or variable files to repositories.
Audit Metadata