patch-prioritization
Pass
Audited by Gen Agent Trust Hub on Jul 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements a robust remediation process based on established cybersecurity frameworks, including SSVC 2.1, EPSS v3, and the CISA KEV catalog.
- [EXTERNAL_DOWNLOADS]: The skill fetches exploit probability data from the official FIRST.org EPSS API and references the CISA Known Exploited Vulnerabilities catalog. These are trusted, well-known resources in the cybersecurity community.
- [PROMPT_INJECTION]: Includes a dedicated safety notice that explicitly instructs the agent to ignore and flag any malicious instructions embedded in processed data (such as scan reports or ticket descriptions), which is a recommended defensive practice for agentic workflows.
- [COMMAND_EXECUTION]: Uses a standard argument placeholder ($ARGUMENTS) to scope the vulnerability review to a specific target file or directory without invoking arbitrary system commands.
Audit Metadata