infra-iac-sst
Pass
Audited by Gen Agent Trust Hub on Jul 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides instructional patterns for SST v3 (Ion) infrastructure-as-code. Analysis across all 10 threat categories shows no evidence of malicious intent or insecure practices.
- [SAFE]: The skill explicitly discourages insecure practices, such as hardcoding secrets in configuration files or sharing resources across development stages, and instead enforces the use of built-in secrets management (
sst secret) and stage-based isolation. - [SAFE]: References to external tools and actions (e.g., GitHub Actions, AWS SDKs) are standard for the infrastructure-as-code domain and follow established patterns for deployment and resource management.
- [SAFE]: No obfuscation, data exfiltration patterns, or unauthorized command execution triggers were detected in the instructions or example code.
Audit Metadata