gcp-pipeline-resource-provisioning

Pass

Audited by Gen Agent Trust Hub on Apr 28, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes 'gcloud' and 'git' commands to discover project metadata and deploy infrastructure resources. Specifically, it uses 'gcloud config' and 'gcloud projects describe' for discovery, and 'gcloud beta orchestration-pipelines' for resource validation and deployment.
  • [SAFE]: The skill defines a strict secret management policy, requiring the use of external Secret Manager references and explicitly forbidding the agent from hardcoding, reading, or creating secret payloads, which protects sensitive credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 28, 2026, 10:20 PM