render-env-vars
Pass
Audited by Gen Agent Trust Hub on May 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is entirely instructional and serves as a reference for configuring environment variables on Render. No security risks were identified.
- [DATA_EXPOSURE_AND_EXFILTRATION]: The skill specifically advises against committing secrets to version control and suggests secure alternatives such as using 'sync: false', 'generateValue', or the Render Dashboard. This aligns with security best practices for credential management.
- [DYNAMIC_CONTEXT_INJECTION]: No use of dynamic context injection ('!command') or shell execution was detected in the skill definitions.
Audit Metadata