google-cicd-deploy
Pass
Audited by Gen Agent Trust Hub on May 6, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes standard command-line tools such as
gcloud,kubectl, anddockerto perform deployment operations and manage cloud infrastructure. - [SAFE]: Implements a mandatory security check using the
scan_code_for_secretstool prior to any code upload or image build, mitigating the risk of credential exposure. - [SAFE]: Recommends and generates secure container configurations, including multi-stage builds, the use of official base images, and running processes as non-root users.
- [SAFE]: Maintains operational transparency by requiring user approval for deployment plans, parameter selection, and public storage bucket creation.
Audit Metadata