rhdh-prow-jobs

Pass

Audited by Gen Agent Trust Hub on Aug 13, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The script scripts/rhdh_prow/openshift_release.py uses subprocess.run to invoke the gh (GitHub CLI) tool for querying repository contents. This is a standard and safe method for interacting with GitHub repositories within the skill's operational context.\n- [EXTERNAL_DOWNLOADS]: The skill performs network requests to official and whitelisted domains to fulfill its data requirements.\n
  • It fetches YAML configuration files from raw.githubusercontent.com (a whitelisted domain).\n
  • It fetches product lifecycle information from access.redhat.com, which is the official domain for Red Hat product data.\n- [SAFE]: The skill exhibits no signs of malicious activity, obfuscation, or unauthorized data exfiltration. Its behavior is consistent with the provided documentation and intended use case.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 13, 2026, 03:41 PM
Security Audit — agent-trust-hub — rhdh-prow-jobs