cloud-native-runtime
Pass
Audited by Gen Agent Trust Hub on Jul 6, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [SAFE]: The skill serves as an extensive documentation and checklist resource for cloud-native engineering. It prioritizes security best practices, including least-privilege IAM, secret management, and input validation.
- [COMMAND_EXECUTION]: Includes a utility script
scripts/validate-package.shdesigned to verify the integrity and structure of the skill package. The script performs local file checks and uses embedded Python snippets for JSON and markdown link validation without network access. - [SAFE]: All external links, metadata, and repository references align with the identified author's resources and the skill's stated purpose.
- [SAFE]: While the skill involves processing external data (such as code reviews and infrastructure diffs), it incorporates instructions for the agent to verify the source of truth in code and configuration, reducing the risk of indirect prompt injection.
Audit Metadata