spicepod-config
Pass
Audited by Gen Agent Trust Hub on Apr 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides informational templates for
spicepod.yamlmanifest files used by the Spice runtime engine. - [SAFE]: Configuration examples for sensitive data (like API keys and database credentials) correctly utilize secure secret management patterns, such as
${ secrets:KEY }and${ env:VARIABLE }, rather than hardcoding values. - [SAFE]: All external documentation references and dependency examples point to the official vendor domain (spiceai.org) or the vendor's GitHub organization (spiceai).
- [NO_CODE]: The skill consists entirely of Markdown documentation and manifest templates; it contains no executable scripts or code logic that could be exploited.
Audit Metadata