container-hardening
Pass
Audited by Gen Agent Trust Hub on Jul 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is entirely composed of documentation and guidance for secure container development. It does not contain any executable scripts or dangerous commands.
- [REMOTE_CODE_EXECUTION]: No remote code execution patterns were found. References to external tools like Hadolint and the Certsuite repository are provided as educational resources for the user to utilize independently.
- [DATA_EXFILTRATION]: No network activity or sensitive file access patterns were detected. External links point to official Red Hat domains, GitHub repositories of well-known organizations, or standard Kubernetes documentation.
- [PROMPT_INJECTION]: There are no instructions that attempt to manipulate the agent's behavior, bypass safety guardrails, or leak system prompts.
- [CREDENTIALS_UNSAFE]: No hardcoded credentials or unsafe secret handling practices were identified. The skill correctly advises on the use of service account tokens and security contexts.
Audit Metadata