iam-review

Pass

Audited by Gen Agent Trust Hub on Jul 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements proactive defense against prompt injection by instructing the agent to ignore and report any directives (such as "ignore previous instructions") found within analyzed IAM policies or metadata.
  • [SAFE]: The skill enforces strict data handling boundaries, explicitly forbidding the execution of commands found in policies and the exfiltration of any discovered credentials or secrets.
  • [SAFE]: Access is restricted to read-only tools (Read, Grep, Glob), and the skill includes a clear directive that it is for assessment only and must not perform configuration changes.
  • [SAFE]: No external dependencies, remote code downloads, obfuscation, or persistence mechanisms were detected in the skill's instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 2, 2026, 01:36 PM
Security Audit — agent-trust-hub — iam-review