JFrog Runtime
Pass
Audited by Gen Agent Trust Hub on Apr 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill correctly handles authentication by using environment variables ($JFROG_ACCESS_TOKEN) and configuration variables ($JFROG_URL), avoiding the risk of hardcoded credentials.
- [SAFE]: Interaction with the JFrog platform is performed through official API endpoints and the jf CLI, which is a trusted tool provided by the skill's author.
- [SAFE]: All external links and resources point to official jfrog.com domains, ensuring that users are directed to verified documentation and support.
- [SAFE]: The skill's behavior is consistent with its stated purpose of infrastructure and security monitoring, with no evidence of unauthorized data access or exfiltration beyond its scope.
Audit Metadata