tinyship-deploy

Pass

Audited by Gen Agent Trust Hub on Jun 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The deployment instructions for Docker, Vercel, and Cloudflare Workers follow established industry standards. No malicious patterns, prompt injections, or obfuscation were detected.
  • [COMMAND_EXECUTION]: The skill contains instructions for building and deploying applications using common tools such as docker compose, pnpm, wrangler, and pm2. These operations are appropriate for the skill's stated purpose of project deployment.
  • [EXTERNAL_DOWNLOADS]: The skill recommends installing official command-line utilities (wrangler, pm2) from the public NPM registry. These are well-known developer tools.
  • [CREDENTIALS_UNSAFE]: The skill promotes secure credential management by instructing users to use environment variables and .env files for sensitive data like DATABASE_URL and BETTER_AUTH_SECRET. It also suggests using openssl to generate secure secrets locally.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 15, 2026, 08:55 AM
Security Audit — agent-trust-hub — tinyship-deploy