container-security-hardening
Pass
Audited by Gen Agent Trust Hub on Jul 6, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill provides instructions to download installation scripts for security tools such as Trivy and Grype from their official GitHub repositories (Aqua Security and Anchore). These are well-known technology vendors.
- [REMOTE_CODE_EXECUTION]: The skill includes patterns for executing shell scripts downloaded from the official repositories of established security organizations to install scanning utilities. These instructions include a manual inspection step using
sedto verify the script content before execution. - [COMMAND_EXECUTION]: The skill performs local context discovery using standard shell commands like
findandgrepto identify Dockerfiles, Kubernetes manifests, and existing security configurations, allowing the agent to provide tailored hardening advice.
Audit Metadata