infrastructure-as-code

Pass

Audited by Gen Agent Trust Hub on Mar 31, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No malicious instructions, bypass attempts, or overrides of agent behavior were detected in the skill instructions.\n- [DATA_EXFILTRATION]: There is no evidence of hardcoded credentials or sensitive data access. The skill explicitly lists hardcoding secrets as an anti-pattern to be avoided.\n- [REMOTE_CODE_EXECUTION]: The skill references standard Terraform providers from HashiCorp, which is a well-known and trusted source. No suspicious remote code execution or script downloads were found.\n- [COMMAND_EXECUTION]: The included commands (terraform init, fmt, validate, plan, apply) are standard CLI operations for managing infrastructure and are appropriate for the skill's stated purpose.\n- [OBFUSCATION]: No hidden content, encoded strings, or multi-layered obfuscation techniques were detected within the file.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 31, 2026, 09:08 AM
Security Audit — agent-trust-hub — infrastructure-as-code