okta-cis-to-descope

Pass

Audited by Gen Agent Trust Hub on Jun 18, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute shell commands such as grep, find, and curl to analyze the project's source code and retrieve configuration data from the Okta Management API for auditing purposes.
  • [EXTERNAL_DOWNLOADS]: The skill references and fetches resources from the vendor's official domains (descope.com) and well-known services (Okta, GitHub, Unpkg). It also recommends the installation of the Descope Docs MCP server to provide the agent with up-to-date documentation.
  • [DATA_EXPOSURE]: The skill analyzes local files, including environment configuration and source code, to identify authentication patterns and sensitive environment variables required to understand the current Okta implementation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 18, 2026, 09:49 AM
Security Audit — agent-trust-hub — okta-cis-to-descope