patch-prioritization

Pass

Audited by Gen Agent Trust Hub on Jul 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements a robust remediation process based on established cybersecurity frameworks, including SSVC 2.1, EPSS v3, and the CISA KEV catalog.
  • [EXTERNAL_DOWNLOADS]: The skill fetches exploit probability data from the official FIRST.org EPSS API and references the CISA Known Exploited Vulnerabilities catalog. These are trusted, well-known resources in the cybersecurity community.
  • [PROMPT_INJECTION]: Includes a dedicated safety notice that explicitly instructs the agent to ignore and flag any malicious instructions embedded in processed data (such as scan reports or ticket descriptions), which is a recommended defensive practice for agentic workflows.
  • [COMMAND_EXECUTION]: Uses a standard argument placeholder ($ARGUMENTS) to scope the vulnerability review to a specific target file or directory without invoking arbitrary system commands.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 2, 2026, 01:37 PM
Security Audit — agent-trust-hub — patch-prioritization