dockerfile-optimise

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a collection of reference documents for Dockerfile optimization. It does not contain executable code or perform any operations outside of providing information to the user.
  • [SAFE]: Security-related rules within the skill, such as those for non-root users and secret mounts, correctly advise on reducing container attack surfaces and protecting sensitive data using standard BuildKit features.
  • [SAFE]: A heuristic flag for destructive commands in 'references/sec-ssh-mounts.md' was determined to be a false positive. The commands (e.g., rm -rf /root/.ssh) are standard cleanup practices used in documentation examples to demonstrate secure build hygiene.
  • [SAFE]: No signs of prompt injection, data exfiltration, or obfuscation were found across the analyzed files. All external links point to official and trusted Docker documentation sites.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 04:26 PM
Security Audit — agent-trust-hub — dockerfile-optimise