ci-cd-patterns

Pass

Audited by Gen Agent Trust Hub on Apr 7, 2026

Risk Level: SAFEREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The CI/CD templates include a command to install the oasdiff utility via a remote script (curl piped to sh). This script is sourced from the official GitHub repository of Tufin, a recognized enterprise security company.
  • [EXTERNAL_DOWNLOADS]: The skill references various official GitHub Actions and tools from established organizations, including Docker, GitHub (for CodeQL), and Astral. These references follow standard industry practices for automated workflows.
  • [SAFE]: The skill promotes secure practices, such as the use of GitHub Secrets for sensitive environment variables and the inclusion of static analysis and secret scanning tools in pipelines.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 7, 2026, 10:29 AM
Security Audit — agent-trust-hub — ci-cd-patterns