anta-validation

Pass

Audited by Gen Agent Trust Hub on Aug 6, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill utilizes environment variables (ANTA_USERNAME, ANTA_PASSWORD) for authentication, which prevents sensitive credentials from being exposed in logs or tool execution arguments.
  • [SAFE]: The implementation is restricted to read-only operations for network validation, preventing unauthorized configuration changes on devices.
  • [SAFE]: The documentation explicitly discloses that TLS verification is disabled by default for compatibility with lab environments, ensuring transparency for the user regarding this security configuration.
  • [PROMPT_INJECTION]: An indirect prompt injection surface is present because the skill processes state data from external network devices. Ingestion points: Device output returned by the anta_run_tests tool (SKILL.md). Boundary markers: Absent. Capability inventory: Network read access to Arista EOS devices via ANTA validation tools. Sanitization: No explicit filtering or sanitization of device output is documented.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 6, 2026, 09:47 AM
Security Audit — agent-trust-hub — anta-validation