owasp-docker

Pass

Audited by Gen Agent Trust Hub on May 5, 2026

Risk Level: SAFE
Full Analysis
  • Documentation-Only Skill: The skill consists entirely of Markdown files intended for information retrieval and reference. It does not contain any executable scripts (Python, JavaScript, Shell) or configuration files that would trigger automated actions.
  • Security Knowledge Base: The content is strictly focused on identifying and remediating Docker-related security risks, such as insecure user mapping, unpatched components, and resource exhaustion. The guidance provided aligns with established industry standards (OWASP).
  • Reference-Only Links: All external URLs in the skill point to well-known and trusted domains, such as the official OWASP project site, the Creative Commons license portal, and reputable GitHub repositories for security standards. No suspicious or obfuscated links were detected.
  • No-Code Implementation: Since the skill contains no code, it does not introduce risks related to remote code execution, dependency vulnerabilities, or unauthorized command execution. It operates purely as a set of instructions and data for an AI agent to use when responding to user queries about container security.
Audit Metadata
Risk Level
SAFE
Analyzed
May 5, 2026, 06:12 PM