deployment-gotchas

Pass

Audited by Gen Agent Trust Hub on Sep 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides standard, high-quality engineering guidelines for Elixir/Phoenix deployments.
  • [SAFE]: Secret management practices correctly emphasize using environment variables via Elixir's System.fetch_env! mechanism in runtime.exs, ensuring that secrets are not hardcoded or compiled into release artifacts.
  • [SAFE]: The health check implementation is described as a read-only database query (SELECT 1), following security best practices for liveness probes by avoiding side effects.
  • [SAFE]: The Dockerfile uses standard multi-stage build patterns and official Elixir/Alpine images from well-known repositories.
  • [SAFE]: No obfuscation, data exfiltration, unauthorized privilege escalation, or malicious prompt injection patterns were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 28, 2026, 11:12 PM
Security Audit — agent-trust-hub — deployment-gotchas