docker-scout
Pass
Audited by Gen Agent Trust Hub on Jun 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides documentation and command examples for the official
docker scoutCLI tool. No executable scripts are bundled. - [COMMAND_EXECUTION]: The shell commands included in the documentation (
docker scout quickview,docker scout cves, etc.) are standard operations for image vulnerability scanning and align with the skill's stated purpose. - [EXTERNAL_DOWNLOADS]: External references are limited to official Docker documentation (
docs.docker.com,scout.docker.com) and official GitHub Actions (docker/scout-action,actions/checkout). - [DATA_EXFILTRATION]: No patterns for accessing sensitive files (like
.ssh,.aws, or.env) or exfiltrating data to unknown domains were detected. - [PROMPT_INJECTION]: The skill contains no instructions aimed at bypassing AI safety guardrails or overriding system prompts.
Audit Metadata