encrypted-saved-objects
Pass
Audited by Gen Agent Trust Hub on May 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill documents secure coding practices for handling sensitive data (API keys, credentials, PII) in Kibana using the Encrypted Saved Objects (ESO) service.
- [SAFE]: It provides explicit warnings about high-risk operations, such as the dangerouslyExposeValue configuration and the potential for data corruption during partial updates if encrypted or AAD (Additional Authenticated Data) attributes are modified incorrectly.
- [SAFE]: The documentation includes a detailed security checklist and guides the agent to verify registration correctness, secret exposure, and proper usage of migration functions like createModelVersion.
- [SAFE]: All external references point to official Elastic documentation and internal repository paths, which are consistent with the vendor identity.
Audit Metadata