workflows

Pass

Audited by Gen Agent Trust Hub on Mar 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's functionality is limited to managing resources on the TrueFoundry platform using official vendor tools and documented API endpoints.
  • [COMMAND_EXECUTION]: The skill executes standard commands such as tfy, pip, and python to manage workflow deployments and environment configurations. These are expected behaviors for a DevOps-oriented AI skill.
  • [EXTERNAL_DOWNLOADS]: The skill installs the truefoundry SDK and interacts with the vendor's API infrastructure (e.g., truefoundry.cloud). These resources are provided by the verified author of the skill.
  • [CREDENTIALS_UNSAFE]: The skill correctly handles the TFY_API_KEY by loading it from environment variables or .env files rather than using hardcoded values. It also provides guidance on using TrueFoundry's internal secret management for application-level credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 11, 2026, 03:26 AM