infrastructure-as-code
Pass
Audited by Gen Agent Trust Hub on Apr 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides professional and educational guidelines for Infrastructure as Code development without malicious patterns.- [SAFE]: Explicitly instructs users to avoid committing sensitive files such as .tfstate and .tfvars that may contain credentials.- [SAFE]: Recommends the use of security-first tools like tfsec and checkov to detect infrastructure misconfigurations.- [SAFE]: Demonstrates secure credential handling in automated workflows using secret environment variables rather than hardcoded keys.- [SAFE]: All external references and module examples target well-known and trusted organizations or official repositories.
Audit Metadata