deployment-procedures

Warn

Audited by Gen Agent Trust Hub on Feb 18, 2026

Risk Level: MEDIUMCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • COMMAND_EXECUTION (HIGH): The skill instructs the agent to use sudo for administrative tasks such as configuring Nginx, managing services via Supervisor, and setting up production environments. Evidence found in SKILL.md includes 'sudo bench setup production <linux_user>', 'sudo service nginx reload', and 'sudo supervisorctl restart all'.
  • EXTERNAL_DOWNLOADS (MEDIUM): The skill performs downloads from external sources that are not on the trusted organization/repository list. Evidence found in SKILL.md: 'git clone https://github.com/frappe/frappe_docker.git' and 'bench update --pull --reset'. Note that while Frappe is a known project, it is not within the explicitly defined trusted scope.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 18, 2026, 12:05 AM