admin-infra-hetzner
Facilitates the deployment of cost-effective infrastructure on Hetzner Cloud using ARM64 or x86 servers for optimal performance.
Install this skill
Security score
The admin-infra-hetzner skill was audited on Feb 9, 2026 and we found 24 security issues across 2 threat categories, including 5 high-severity. Review the findings below before installing.
Categories Tested
Security Issues
Access to hidden dotfiles in home directory
| 37 | - [ ] SSH_KEY_PATH - Path to local SSH private key (default: ~/.ssh/id_rsa) |
Access to hidden dotfiles in home directory
| 110 | mkdir -p ~/.config/hcloud |
Access to hidden dotfiles in home directory
| 111 | cat > ~/.config/hcloud/cli.toml << EOF |
Access to hidden dotfiles in home directory
| 118 | chmod 600 ~/.config/hcloud/cli.toml |
Access to hidden dotfiles in home directory
| 139 | ls ~/.ssh/id_rsa.pub |
Access to hidden dotfiles in home directory
| 145 | ssh-keygen -t rsa -b 4096 -f ~/.ssh/id_rsa -N "" |
Access to hidden dotfiles in home directory
| 157 | hcloud ssh-key create --name my-key --public-key-from-file ~/.ssh/id_rsa.pub |
Access to hidden dotfiles in home directory
| 323 | echo "SSH_KEY_PATH=~/.ssh/id_rsa" >> .env.local |
Access to SSH directory
| 37 | - [ ] SSH_KEY_PATH - Path to local SSH private key (default: ~/.ssh/id_rsa) |
Access to SSH directory
| 139 | ls ~/.ssh/id_rsa.pub |
Access to SSH directory
| 145 | ssh-keygen -t rsa -b 4096 -f ~/.ssh/id_rsa -N "" |
Access to SSH directory
| 157 | hcloud ssh-key create --name my-key --public-key-from-file ~/.ssh/id_rsa.pub |
Access to SSH directory
| 323 | echo "SSH_KEY_PATH=~/.ssh/id_rsa" >> .env.local |
Access to .env file
| 320 | # Save to .env.local for downstream skills |
Access to .env file
| 321 | echo "SERVER_IP=$SERVER_IP" >> .env.local |
Access to .env file
| 322 | echo "SSH_USER=root" >> .env.local |
Access to .env file
| 323 | echo "SSH_KEY_PATH=~/.ssh/id_rsa" >> .env.local |
Access to .env file
| 324 | echo "SERVER_ARCH=$SERVER_ARCH" >> .env.local |
Access to .env file
| 325 | echo "COOLIFY_SERVER_IP=$SERVER_IP" >> .env.local |
Access to .env file
| 326 | echo "KASM_SERVER_IP=$SERVER_IP" >> .env.local |
External URL reference
| 91 | Sign up at: https://hetzner.cloud/?ref=o3LvvIQgI5gs |
External URL reference
| 95 | **Get API token**: https://console.hetzner.cloud/ → Project → Security → API Tokens |
External URL reference
| 389 | - [Hetzner Cloud Console](https://console.hetzner.cloud/) |
External URL reference
| 391 | - [Server Types & Pricing](https://www.hetzner.com/cloud) |