disaster-recovery

Pass

Audited by Gen Agent Trust Hub on Sep 8, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides instructions and tool definitions for managing Proxmox virtual machine and container backups. No evidence of malicious intent, prompt injection, or obfuscation was found during the analysis.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user queries regarding infrastructure status and backup operations (e.g., in SKILL.md example questions). While it lacks explicit input sanitization or boundary markers for these data ingestion points, this represents a standard operational surface with low risk given the intended use case.
  • [COMMAND_EXECUTION]: The skill references tools like create_vm_backup and restore_vm_backup. The skill-report.json file correctly notes that internal static analysis flags on these tool names are false positives caused by standard Markdown backtick formatting in SKILL.md.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 8, 2026, 04:26 PM
Security Audit — agent-trust-hub — disaster-recovery