the-auditor
Pass
Audited by Gen Agent Trust Hub on Jul 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is designed for defensive security auditing and follows industry-standard practices for identifying vulnerabilities such as those in the OWASP Top 10.
- [SAFE]: References 'gitleaks/gitleaks-action@v2', a well-known and reputable tool for secret detection in GitHub workflows.
- [SAFE]: Explicitly instructs the agent to block findings like hardcoded secrets, unparameterized SQL queries, and unauthenticated endpoints, promoting secure coding practices.
- [SAFE]: Provides guidance on managing API keys and credentials using environment variables and secrets management, avoiding hardcoded sensitive data.
Audit Metadata