skills/autohandai/community-skills/implementing-zero-standing-privilege-with-cyberark/Gen Agent Trust Hub
implementing-zero-standing-privilege-with-cyberark
Pass
Audited by Gen Agent Trust Hub on Jul 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists of legitimate documentation and utility scripts designed for security auditing and IAM configuration review.
- [COMMAND_EXECUTION]: The script
scripts/agent.pyandscripts/process.pyperform discovery operations via REST APIs and cloud SDKs (boto3), which is standard for the described auditing functionality. - [SAFE]: No indicators of malicious intent, data exfiltration, or obfuscation were found; the skill's activities align with its stated purpose of managing identity and access security.
- [CREDENTIALS_UNSAFE]: While the
agent.pyscript accepts credentials via command-line arguments, this is a known design pattern in utility scripts rather than a malicious credential-stealing attempt.
Audit Metadata