oro-behat-ci
Pass
Audited by Gen Agent Trust Hub on Aug 4, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security risks were detected. The skill contains legitimate technical documentation for DevOps and CI/CD pipelines.
- [EXTERNAL_DOWNLOADS]: The skill references official and well-known Docker images, such as
selenium/standalone-chromeanddocker:dind. It also links to official OroCommerce GitHub repositories (github.com/oroinc/*) for reference, which are trusted sources for the software platform described. - [CREDENTIALS_UNSAFE]: The skill demonstrates safe practices for handling secrets by instructing users to use environment variables (
$CI_REGISTRY_PASSWORD,$GITLAB_COMPOSER_TOKEN) rather than hardcoding credentials. - [COMMAND_EXECUTION]: The command examples provided (e.g.,
bin/behat,docker compose up) are standard tool invocations for the described CI/CD tasks and do not involve suspicious execution patterns or remote script piping.
Audit Metadata