oro-behat-ci

Pass

Audited by Gen Agent Trust Hub on Aug 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security risks were detected. The skill contains legitimate technical documentation for DevOps and CI/CD pipelines.
  • [EXTERNAL_DOWNLOADS]: The skill references official and well-known Docker images, such as selenium/standalone-chrome and docker:dind. It also links to official OroCommerce GitHub repositories (github.com/oroinc/*) for reference, which are trusted sources for the software platform described.
  • [CREDENTIALS_UNSAFE]: The skill demonstrates safe practices for handling secrets by instructing users to use environment variables ($CI_REGISTRY_PASSWORD, $GITLAB_COMPOSER_TOKEN) rather than hardcoding credentials.
  • [COMMAND_EXECUTION]: The command examples provided (e.g., bin/behat, docker compose up) are standard tool invocations for the described CI/CD tasks and do not involve suspicious execution patterns or remote script piping.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 4, 2026, 08:15 AM
Security Audit — agent-trust-hub — oro-behat-ci