container-security-hardening

Pass

Audited by Gen Agent Trust Hub on Jul 6, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to download installation scripts for security tools such as Trivy and Grype from their official GitHub repositories (Aqua Security and Anchore). These are well-known technology vendors.
  • [REMOTE_CODE_EXECUTION]: The skill includes patterns for executing shell scripts downloaded from the official repositories of established security organizations to install scanning utilities. These instructions include a manual inspection step using sed to verify the script content before execution.
  • [COMMAND_EXECUTION]: The skill performs local context discovery using standard shell commands like find and grep to identify Dockerfiles, Kubernetes manifests, and existing security configurations, allowing the agent to provide tailored hardening advice.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 6, 2026, 08:14 PM
Security Audit — agent-trust-hub — container-security-hardening