cloudflare-deploy
Pass
Audited by Gen Agent Trust Hub on Jun 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides comprehensive documentation and configuration guidance for Cloudflare platform services. No malicious patterns or security risks were identified.
- [EXTERNAL_DOWNLOADS]: Fetches configuration and dependencies from trusted organizations and well-known services including Cloudflare, Vercel, and Pulumi. All URLs point to official domains such as cloudflare.com, vercel.com, and pulumi.com.
- [DATA_EXPOSURE_AND_EXFILTRATION]: Provides standard practices for secret management using environment variables and Cloudflare's Secrets Store. No hardcoded credentials or unauthorized data access patterns were found; examples use safe placeholders.
- [INDIRECT_PROMPT_INJECTION]: Documents services like Email Workers and AI Search which ingest untrusted external data. While this presents an inherent attack surface for the underlying platform features, the documentation includes best practices for handling such data safely (e.g., using envelope addresses in Email Workers).
Audit Metadata