aws-observability-and-cost-readiness
Pass
Audited by Gen Agent Trust Hub on Jun 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues or malicious patterns were detected in the skill files. The skill focuses on AWS configuration and observability best practices.
- [DATA_EXPOSURE]: The skill includes explicit instructions and quality checks to ensure that PII and secrets are redacted in the telemetry pipeline before reaching log storage, which is a positive security practice.
- [COMMAND_EXECUTION]: No shell command execution patterns or unauthorized subprocess calls were found. The skill provides Terraform (HCL) templates as output references but explicitly hands off the actual IaC execution to other specialized skills.
- [REMOTE_CODE_EXECUTION]: No remote script downloads, piped execution (e.g., curl|bash), or dynamic code generation patterns were identified.
- [PROMPT_INJECTION]: The instructions do not contain attempts to override agent safety guidelines, bypass constraints, or extract system prompts.
- [INDIRECT_PROMPT_INJECTION]: While the skill ingests architectural decisions from other files, it does so within a structured process and does not exhibit high-risk capabilities like arbitrary code execution that would make this surface critical.
Audit Metadata