implementing-zero-standing-privilege-with-cyberark

Pass

Audited by Gen Agent Trust Hub on Jul 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of legitimate documentation and utility scripts designed for security auditing and IAM configuration review.
  • [COMMAND_EXECUTION]: The script scripts/agent.py and scripts/process.py perform discovery operations via REST APIs and cloud SDKs (boto3), which is standard for the described auditing functionality.
  • [SAFE]: No indicators of malicious intent, data exfiltration, or obfuscation were found; the skill's activities align with its stated purpose of managing identity and access security.
  • [CREDENTIALS_UNSAFE]: While the agent.py script accepts credentials via command-line arguments, this is a known design pattern in utility scripts rather than a malicious credential-stealing attempt.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 16, 2026, 09:08 AM
Security Audit — agent-trust-hub — implementing-zero-standing-privilege-with-cyberark