monitoring-expert

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a high-quality reference for implementing observability using industry-standard libraries and methods (RED/USE). The templates for logging, metrics, and tracing follow modern security and development standards.
  • [DATA_EXPOSURE]: The skill includes a 'MUST NOT DO' constraint specifically forbidding the logging of sensitive data such as passwords, tokens, or PII, which demonstrates a proactive security posture.
  • [EXTERNAL_DOWNLOADS]: The skill references standard development and diagnostic tools including k6, clinic.js, and py-spy. These are well-known packages used legitimately for the skill's stated purpose of performance monitoring and load testing.
  • [INDIRECT_PROMPT_INJECTION]: While the skill involves processing application metadata and logs, it provides specific guidance on structured logging and correlation IDs, minimizing the risk of data confusion or injection in monitoring pipelines.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 09:18 PM
Security Audit — agent-trust-hub — monitoring-expert