operating-google-cloud — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited operating-google-cloud (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
GCP and Kubernetes resources and mutations should use MCP tools. These tools are specialized backend agents. As the client agent, your role is to identify the intent and delegate the entire task verbatim to the appropriate intelligent tool.
Note: These tools are part of the gemini_cloud_assist and application_design_center MCP Servers. Tool names are qualified with their respective server names (e.g., gemini_cloud_assist:tool_name).
gemini_cloud_assist:ask_cloud_assist for general inquiries, estate queries (e.g., "List my active VMs"), low-complexity directives, and triage of ambiguous issues.gemini_cloud_assist:design_infra for designing, architecting, or deploying infrastructure.manage_app_design: Use for comprehensive ADC application designs and IaC imports.generate_terraform: Use for single-resource Terraform generation.generate_gcloud / generate_bigquery: Use for generating CLI commands.generate_kubernetes_yaml: Use for Kubernetes manifests.debug_deployment: Use for debugging ADC deployment failures.gemini_cloud_assist:investigate_issue for specialized "SRE in a box" diagnostics and Root Cause Analysis (RCA).gemini_cloud_assist:optimize_costs for analyzing spend and identifying savings.gemini_cloud_assist:invoke_operation specifically for GKE operations.GKE_APPLY (for raw YAML manifests) and GKE_PATCH (for specific JSON patches).userQuery must be a stringified JSON object containing operation_type and the corresponding gke_apply or gke_patch details.When answering any queries about Google Cloud Platform (GCP), YOU MUST follow these rules:
contextId in their response. Ensure that any subsequent turns to a GCA tool pass this contextId as a parameter to maintain multi-turn conversation state.gcloud or kubectl..gcloud/config or kubeconfig.gemini_cloud_assist:invoke_operation after generation. Explicitly ask: "Would you like to proceed with applying this configuration?". If the user confirms, invoke the tool to apply the manifests.~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.