container-hardening
Pass
Audited by Gen Agent Trust Hub on May 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides security-focused guidance for container environments, promoting best practices like non-root users, multi-stage builds, and image signing.
- [SAFE]: External references and tool recommendations (e.g., Google's Distroless, Chainguard, Sigstore, NIST, CIS, OWASP) target well-known and trusted technology or security organizations.
- [SAFE]: The skill identifies potential attack surfaces for indirect prompt injection when processing untrusted inputs like Dockerfiles or scan results, but this is inherent to its primary purpose of security review and it does not exhibit dangerous autonomous behavior.
Audit Metadata