devops-policy-as-code
Pass
Audited by Gen Agent Trust Hub on Jul 13, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: Technical analysis of the instructions and reference materials confirms that the content is strictly focused on DevOps governance and Kubernetes security. No attempts at prompt injection, persistence, or privilege escalation were found.
- [EXTERNAL_DOWNLOADS]: The skill includes documentation for installing OPA and Conftest. These links point to verified official repositories (github.com/open-policy-agent) and organization domains (openpolicyagent.org). These are legitimate references for the skill's intended purpose and do not represent a security risk.
- [SAFE]: While some reference files (e.g., architecture-patterns.md) contain highly repetitive content and boilerplate examples, manual inspection shows this to be a result of automated content generation rather than an attempt at obfuscation or concealing malicious code.
Audit Metadata