privileged-access

Pass

Audited by Gen Agent Trust Hub on Jul 2, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill includes defensive instructions to counter prompt injection attempts. It explicitly directs the agent to treat phrases like "ignore previous instructions" found in audited data as security findings rather than commands.
  • [DATA_EXFILTRATION]: The skill contains explicit prohibitions against the exfiltration of credentials, secrets, or API keys discovered during the audit. It relies on local-only tools (Read, Grep, Glob) and includes no network capabilities or external domains.
  • [INDIRECT_PROMPT_INJECTION]: The skill audits untrusted PAM configuration and session logs through platform tools. It establishes a clear security boundary with instructions to ignore embedded commands, specifies a limited capability inventory restricted to reading, and requires reporting rather than execution of any discovered injection content.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 2, 2026, 01:37 PM
Security Audit — agent-trust-hub — privileged-access