deployment-engineer
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill automates routine DevOps tasks such as creating Dockerfiles and GitHub Actions workflows using industry-standard configurations that do not introduce security vulnerabilities.
- [DATA_EXFILTRATION]: The skill demonstrates safe practices for secret management by providing environment variable templates (.env.example) and explicitly instructing the agent to ensure sensitive environment files are excluded from version control via .gitignore.
- [EXTERNAL_DOWNLOADS]: References to external code are limited to official and verified GitHub Actions (actions/checkout, actions/setup-node) within generated workflow files, posing no risk of executing untrusted remote code.
Audit Metadata