gke-app-onboarding

Pass

Audited by Gen Agent Trust Hub on Sep 22, 2026

Risk Level: SAFE
Full Analysis
  • Security Best Practices: The skill proactively incorporates and recommends security hardening measures for Kubernetes deployments. The provided deployment.yaml example includes runAsNonRoot: true, readOnlyRootFilesystem: true, allowPrivilegeEscalation: false, and capabilities.drop: ["ALL"], which aligns with high-security standards for containerized workloads.
  • Secure Image Management: The workflows emphasize the use of minimal base images (distroless) and multi-stage builds to reduce the potential attack surface of the generated containers. It also highlights the importance of using digest-pinned images to ensure the integrity of deployed software.
  • Trusted Registry Integration: The skill uses official and recognized infrastructure for image storage and builds, such as Google Artifact Registry and official Node.js and Go base images. It also encourages the use of automated vulnerability scanning within the container registry.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 22, 2026, 05:39 AM
Security Audit — agent-trust-hub — gke-app-onboarding