skills/tomevault-io/tomes/ci-cd/Gen Agent Trust Hub

ci-cd

Pass

Audited by Gen Agent Trust Hub on Jun 27, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes local diagnostic scripts (scripts/pipeline_analyzer.py, scripts/ci_health.py) and official platform CLI tools (gh, gl, act) for analyzing pipeline performance and troubleshooting failures.
  • [SAFE]: The instructions consistently promote security best practices, including the use of OIDC for cloud authentication instead of static credentials, pinning actions to specific commit SHAs, and implementing principle of least privilege.
  • [SAFE]: The skill integrates multiple reputable security scanning tools (SAST, SCA, Secret Scanning) into its templates, such as CodeQL, Semgrep, TruffleHog, and Gitleaks.
  • [SAFE]: No evidence of data exfiltration, obfuscation, or unauthorized access to sensitive system files was found in the analyzed instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 27, 2026, 11:06 AM
Security Audit — agent-trust-hub — ci-cd