docker-syntax-buildkit
Pass
Audited by Gen Agent Trust Hub on Apr 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a technical reference and instructional guide for Dockerfile optimization. All analyzed content consists of legitimate documentation, best practices, and code templates for Docker BuildKit features.
- [SAFE]: No malicious patterns, prompt injection attempts, or obfuscation techniques were detected across the files.
- [SAFE]: The skill enhances security by explicitly instructing the agent to avoid baking secrets into Docker image layers using ENV or ARG, recommending the use of
--mount=type=secretinstead. - [SAFE]: All external links point to official Docker documentation (docs.docker.com), and the command examples use standard, well-known package managers (apt, npm, pip, go, etc.) in a safe manner.
Audit Metadata