docker
Pass
Audited by Gen Agent Trust Hub on Jul 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides standard configuration templates for Docker and Spring Boot that follow industry security standards, including the use of non-root users and layered JARs for efficiency.
- [SAFE]: It correctly instructs users to avoid hardcoding credentials, recommending the use of environment variables and secrets management instead.
- [SAFE]: Recommended base images (e.g., eclipse-temurin) and tools for vulnerability scanning (e.g., Trivy, Docker Scout) are from well-known and trusted sources.
- [SAFE]: External links provided point exclusively to official documentation on docker.com and spring.io.
Audit Metadata