aws-solution-architect

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: No malicious patterns or security risks were detected. All functional components (Python scripts) perform logical operations locally without network or unauthorized file system access. The skill correctly implements architectural design and cost analysis as pure data processing tasks.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted application requirements to generate infrastructure templates, representing a potential vulnerability surface. 1. Ingestion points: User-provided requirement dictionaries in ArchitectureDesigner and ServerlessStackGenerator (scripts/). 2. Boundary markers: Absent during template string interpolation. 3. Capability inventory: The skill generates text-based IaC templates but has no capabilities to execute shell commands, perform network requests, or modify the local file system. 4. Sanitization: The skill applies basic sanitization to input strings to ensure compliance with AWS resource naming conventions, reducing the risk of accidental malformed output.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 02:43 PM
Security Audit — agent-trust-hub — aws-solution-architect