okta-cis-to-descope
Pass
Audited by Gen Agent Trust Hub on Jun 18, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute shell commands such as
grep,find, andcurlto analyze the project's source code and retrieve configuration data from the Okta Management API for auditing purposes. - [EXTERNAL_DOWNLOADS]: The skill references and fetches resources from the vendor's official domains (
descope.com) and well-known services (Okta, GitHub, Unpkg). It also recommends the installation of the Descope Docs MCP server to provide the agent with up-to-date documentation. - [DATA_EXPOSURE]: The skill analyzes local files, including environment configuration and source code, to identify authentication patterns and sensitive environment variables required to understand the current Okta implementation.
Audit Metadata