docker-syntax-buildkit

Pass

Audited by Gen Agent Trust Hub on Apr 9, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a technical reference and instructional guide for Dockerfile optimization. All analyzed content consists of legitimate documentation, best practices, and code templates for Docker BuildKit features.
  • [SAFE]: No malicious patterns, prompt injection attempts, or obfuscation techniques were detected across the files.
  • [SAFE]: The skill enhances security by explicitly instructing the agent to avoid baking secrets into Docker image layers using ENV or ARG, recommending the use of --mount=type=secret instead.
  • [SAFE]: All external links point to official Docker documentation (docs.docker.com), and the command examples use standard, well-known package managers (apt, npm, pip, go, etc.) in a safe manner.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 9, 2026, 11:46 AM
Security Audit — agent-trust-hub — docker-syntax-buildkit