configuring-sso-and-scim

Pass

Audited by Gen Agent Trust Hub on Jul 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate administrative instructions for identity provider integration. It includes extensive documentation on safety considerations and recovery procedures, such as break-glass account management.
  • [CREDENTIALS_UNSAFE]: No hardcoded credentials were found. The skill correctly uses descriptive placeholders (e.g., <client-secret>, <bind-password>, and <service-account-password>) for all sensitive authentication data, ensuring users are guided to provide their own secrets securely.
  • [COMMAND_EXECUTION]: The skill provides standard administrative commands for the CockroachDB CLI (ccloud, cockroach sql) and diagnostic tools (openssl, ldapsearch). These commands are necessary for the stated purpose and are documented with clear security warnings regarding potential lockout risks.
  • [EXTERNAL_DOWNLOADS]: External references are limited to official CockroachDB documentation and well-known, trusted identity provider services including Okta, Azure AD, and Google Workspace.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 22, 2026, 03:58 PM
Security Audit — agent-trust-hub — configuring-sso-and-scim