secrets-management
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- [CREDENTIALS_UNSAFE] (SAFE): The documentation includes dummy credentials such as 'root' and 'super-secret-password' within code examples intended for local development and demonstration purposes; these do not represent actual sensitive data exposure.
- [EXTERNAL_DOWNLOADS] (SAFE): The skill references reputable and trusted resources including official GitHub Actions from HashiCorp and AWS, and the TruffleHog security scanner.
- [COMMAND_EXECUTION] (SAFE): Included CLI commands for Vault, AWS, and Docker are standard for infrastructure management and are used appropriately within the context of the skill.
- [PROMPT_INJECTION] (SAFE): No patterns of prompt injection or instructions to bypass safety constraints were detected in the skill content.
Audit Metadata