skills/dga-devops/ai-skill-cloud/req/Gen Agent Trust Hub

req

Pass

Audited by Gen Agent Trust Hub on May 25, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill is designed to perform command-line operations, including running tests and executing cdk deploy. These actions are controlled by the contents of a local tasks.md file and are restricted to the primary purpose of requirement implementation.
  • [INDIRECT_PROMPT_INJECTION]: The skill reads and processes the tasks.md file to identify and execute the next available task. While this represents a surface for indirect prompt injection if the file is tampered with by an external actor, the skill incorporates mandatory confirmation prompts ('ถามยืนยันก่อนเสมอ') which serve as a human-in-the-loop safety checkpoint.
Audit Metadata
Risk Level
SAFE
Analyzed
May 25, 2026, 02:14 PM
Security Audit — agent-trust-hub — req