delegating-to-otto
Pass
Audited by Gen Agent Trust Hub on May 9, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill executes the
astrocommand-line tool to drive the Otto sub-agent. This includes passing user-provided prompts as arguments toastro ottoto perform data engineering tasks.\n- [EXTERNAL_DOWNLOADS]: The skill documentation references official vendor operations such as updating the agent viaastro otto updateand retrieving runtime model configurations from the Astronomer Gateway.\n- [DATA_EXFILTRATION]: Although the sub-agent has the capability to interact with files, the skill explicitly describes bypass-immune safety checks within theastrotool that protect sensitive directories (e.g.,~/.ssh,~/.aws) and environment files from unauthorized access.
Audit Metadata