manage-secrets-env

Pass

Audited by Gen Agent Trust Hub on May 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill incorporates industry-standard security protocols for secret management, specifically advising against committing sensitive files and promoting the use of OIDC-federated identities over static credentials.
  • [COMMAND_EXECUTION]: The skill utilizes several platform-specific CLI tools (AWS, Google Cloud, GitHub, Vercel, etc.) for administrative secret management. These operations are within the scope of the skill's declared purpose and the instructions include explicit safeguards to prevent credential leakage into shell history or logs.
  • [SAFE]: The included check-env-drift.sh script is a transparent shell script that identifies missing environment variable keys. It is designed to extract only the key identifiers and does not process or expose the actual values stored in the environment files.
Audit Metadata
Risk Level
SAFE
Analyzed
May 14, 2026, 02:12 AM
Security Audit — agent-trust-hub — manage-secrets-env