aws-iam
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFE
Full Analysis
- Standard Tool Execution: The skill references
uvx iam-policy-autopilot@latestto automate and ensure deterministic IAM policy generation from source code or Terraform plan outputs. This is used within standard workflow practices. - External Service Authorization Verification: The instructions outline using an external endpoint (
https://servicereference.us-east-1.amazonaws.com/) to accurately query API-to-IAM mappings, mitigating common hallucination bugs. - Best Practice Condition Enforcement: Extensive documentation is provided to educate developers on safety rules regarding
ForAnyValueandForAllValuesset operators, advising the addition ofNullcheck guardrails to prevent unintended policy bypasses.
Audit Metadata