aws-transform

Pass

Audited by Gen Agent Trust Hub on May 14, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • Official Tool Installation: The skill automates the setup of necessary development utilities, including the AWS CLI and ATX CLI, by fetching them from official AWS domains. It also supports installing the Rust toolchain from its well-known official source. These operations are essential for the skill's modernization features.
  • IAM Policy Management: To enable cloud-scale transformations, the skill provides a guided workflow to attach AWS-managed IAM policies to the user's identity. This process is transparent, requires explicit user consent, and utilizes scoped managed policies rather than broad administrative access.
  • Secure Credential Management: For accessing private repositories, the skill guides users to store GitHub Personal Access Tokens and SSH keys in AWS Secrets Manager. This approach ensures that sensitive credentials remain within the user's AWS environment and are not exposed in the conversational interface.
  • Local Execution Management: The skill generates temporary shell scripts to manage background execution of code transformations. These scripts are used to capture exit codes and process logs, allowing the assistant to provide real-time status updates without blocking the user's terminal session.
  • Telemetry Transparency: The skill includes a telemetry feature for service improvement. This behavior is clearly disclosed in the overview, and the instructions provide a mechanism for users to opt out during their session.
Audit Metadata
Risk Level
SAFE
Analyzed
May 14, 2026, 07:56 AM
Security Audit — agent-trust-hub — aws-transform