supply-chain
Pass
Audited by Gen Agent Trust Hub on Aug 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides purely educational and instructional content regarding software supply-chain security best practices.
- [SAFE]: The command examples provided use reputable and established security tools including syft, cdxgen, and cosign without any malicious modifications.
- [SAFE]: All external links reference official documentation from trusted government bodies and recognized open-source security organizations.
- [SAFE]: No obfuscation, hidden URLs, or unauthorized data access mechanisms were detected in the instructions.
Audit Metadata