docker-scout

Pass

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides documentation and command examples for the official docker scout CLI tool. No executable scripts are bundled.
  • [COMMAND_EXECUTION]: The shell commands included in the documentation (docker scout quickview, docker scout cves, etc.) are standard operations for image vulnerability scanning and align with the skill's stated purpose.
  • [EXTERNAL_DOWNLOADS]: External references are limited to official Docker documentation (docs.docker.com, scout.docker.com) and official GitHub Actions (docker/scout-action, actions/checkout).
  • [DATA_EXFILTRATION]: No patterns for accessing sensitive files (like .ssh, .aws, or .env) or exfiltrating data to unknown domains were detected.
  • [PROMPT_INJECTION]: The skill contains no instructions aimed at bypassing AI safety guardrails or overriding system prompts.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 13, 2026, 04:12 AM
Security Audit — agent-trust-hub — docker-scout