netlify-agent-runner

Pass

Audited by Gen Agent Trust Hub on Jul 15, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses official netlify agents:* CLI commands to manage remote tasks. These commands are project-scoped and run on Netlify infrastructure, operating on connected Git repositories rather than the local filesystem.
  • [DATA_EXFILTRATION]: No sensitive data exposure was detected. The skill explicitly prohibits reading authentication tokens from disk or bypassing official API surfaces to access credentials.
  • [PROMPT_INJECTION]: The skill includes instructions to prevent misuse, explicitly stating that AI agents must obtain a separate, distinct confirmation from the user before executing billable tasks.
  • [EXTERNAL_DOWNLOADS]: No external code downloads or unverifiable dependencies were identified. The skill relies on the pre-installed Netlify CLI.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 15, 2026, 08:46 AM
Security Audit — agent-trust-hub — netlify-agent-runner