mise-fy
Pass
Audited by Gen Agent Trust Hub on Jun 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements and promotes security best practices for development environments. It explicitly guides users on how to verify tool binaries using GPG signatures and GitHub attestations (e.g., in references/ci.md).
- [SAFE]: Secret management is handled correctly, advising the use of encrypted files and mise's built-in redaction features to prevent credential leakage in logs (e.g., in references/env.md).
- [SAFE]: The skill utilizes the aqua backend for tool installations, which provides robust supply-chain security through checksums and provenance verification (e.g., in references/tools.md).
- [SAFE]: All external URLs and resources point to official, well-known, and trusted repositories related to the mise ecosystem (e.g., github.com/jdx/mise).
Audit Metadata