compose-reference
Pass
Audited by Gen Agent Trust Hub on Apr 30, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a reference document for the Goldsky Compose platform, providing valid technical documentation for manifest fields, CLI flags, and internal APIs.
- [SAFE]: Secret management instructions follow industry best practices, correctly advising the use of environment variables (e.g.,
env.MY_KEY) and specialized CLI commands (compose secret set) instead of hardcoding credentials. - [SAFE]: All external URLs and references point to the official vendor domain (goldsky.com), which is the trusted source for this specific developer tool.
- [SAFE]: No obfuscation, dynamic code execution, or data exfiltration patterns were detected. The CLI commands described are standard lifecycle operations for a development environment.
Audit Metadata