managing-traefik

Pass

Audited by Gen Agent Trust Hub on Apr 12, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill relies on executing shell commands, specifically curl and kubectl, to interact with Traefik instances and Kubernetes clusters. These commands are used to fetch configuration, status, and metadata for routers, services, and certificates.
  • [PROMPT_INJECTION]: The skill exhibits an attack surface for indirect prompt injection by ingesting data from external environments (Traefik API and Kubernetes cluster states).
  • Ingestion points: Data is ingested via the traefik_api and traefik_k8s helper functions in SKILL.md, which capture output from external services.
  • Boundary markers: The skill does not implement boundary markers or instructions for the agent to ignore potential instructions embedded within the retrieved JSON data.
  • Capability inventory: The skill possesses capabilities to execute network requests (curl) and cluster management commands (kubectl) across all sections of SKILL.md.
  • Sanitization: There is no evidence of sanitization or filtering of the content retrieved from external sources before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 12, 2026, 04:21 PM
Security Audit — agent-trust-hub — managing-traefik