aws
Pass
Audited by Gen Agent Trust Hub on Apr 12, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill generates and executes Bash scripts to interact with AWS services. It mandates the use of parallel execution patterns (background jobs and the wait command) to optimize performance for operations involving multiple resources or metrics.\n- [DATA_EXFILTRATION]: The skill includes strong defensive instructions to ensure the agent never exposes AWS credentials, access keys, or sensitive environment variables in its output, logs, or communication channels.\n- [CREDENTIALS_UNSAFE]: The skill implements a secure workflow for assuming IAM roles using the
aws sts assume-rolecommand. It correctly uses short-lived credentials exported as environment variables for the duration of a script's execution, adhering to the principle of least privilege and avoiding hardcoded secrets.
Audit Metadata