kubespray-certificates
Pass
Audited by Gen Agent Trust Hub on Feb 28, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides various shell commands for certificate management, including
kubeadm certs renew,openssl x509, andsystemctlfor service management. - [COMMAND_EXECUTION]: Includes Ansible playbook commands (
ansible-playbook) that utilize the become flag (-b) for necessary administrative privileges during cluster operations. - [COMMAND_EXECUTION]: Documents the creation and use of systemd timer and service units to automate certificate renewal tasks.
- [SAFE]: All sensitive file paths (e.g.,
/etc/kubernetes/pki/) and administrative procedures documented are standard for Kubernetes cluster maintenance and align with the skill's intended purpose.
Audit Metadata