aws-iam

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFE
Full Analysis
  • Standard Tool Execution: The skill references uvx iam-policy-autopilot@latest to automate and ensure deterministic IAM policy generation from source code or Terraform plan outputs. This is used within standard workflow practices.
  • External Service Authorization Verification: The instructions outline using an external endpoint (https://servicereference.us-east-1.amazonaws.com/) to accurately query API-to-IAM mappings, mitigating common hallucination bugs.
  • Best Practice Condition Enforcement: Extensive documentation is provided to educate developers on safety rules regarding ForAnyValue and ForAllValues set operators, advising the addition of Null check guardrails to prevent unintended policy bypasses.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 07:33 PM
Security Audit — agent-trust-hub — aws-iam