gke-app-onboarding
Pass
Audited by Gen Agent Trust Hub on Sep 22, 2026
Risk Level: SAFE
Full Analysis
- Security Best Practices: The skill proactively incorporates and recommends security hardening measures for Kubernetes deployments. The provided
deployment.yamlexample includesrunAsNonRoot: true,readOnlyRootFilesystem: true,allowPrivilegeEscalation: false, andcapabilities.drop: ["ALL"], which aligns with high-security standards for containerized workloads. - Secure Image Management: The workflows emphasize the use of minimal base images (distroless) and multi-stage builds to reduce the potential attack surface of the generated containers. It also highlights the importance of using digest-pinned images to ensure the integrity of deployed software.
- Trusted Registry Integration: The skill uses official and recognized infrastructure for image storage and builds, such as Google Artifact Registry and official Node.js and Go base images. It also encourages the use of automated vulnerability scanning within the container registry.
Audit Metadata