cloudflare-one-migrations

Pass

Audited by Gen Agent Trust Hub on Sep 6, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • Indirect Prompt Injection Surface: The skill instructions involve the analysis of external configuration exports (JSON, CSV, or logs) from third-party vendors. This data ingestion creates a potential surface where malicious content embedded in a source file could attempt to influence the agent's reasoning or plan generation.
  • Ingestion points: The workflow explicitly requests structured exports and logs from source stacks like Zscaler and Palo Alto for analysis.
  • Boundary markers: The skill does not currently specify the use of delimiters or 'ignore' instructions to isolate imported vendor data from the agent's operational instructions.
  • Capability inventory: The skill is instructional and provides logic for assessment; no tools for automated command execution, network exfiltration, or unauthorized file modifications are included.
  • Sanitization: No specific requirements for validating or sanitizing the content of external exports are mentioned.
  • Trusted External References: The skill references official Cloudflare documentation and reference architectures. These links target a well-known service and are used appropriately for retrieving current migration specifications and design patterns.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 6, 2026, 04:54 AM
Security Audit — agent-trust-hub — cloudflare-one-migrations