docker
Pass
Audited by Gen Agent Trust Hub on Jun 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill contains best practices for Docker and Docker Compose, including security hardening techniques such as using non-root users and multi-stage builds to reduce attack surface.
- [SAFE]: External dependencies, such as Docker base images (e.g., node:22-slim, python:3.12-slim), are from well-known official sources.
- [SAFE]: The skill explicitly advises against security pitfalls like running as root, using latest tags in production, or baking secrets into image layers.
Audit Metadata