terraform-infra

Pass

Audited by Gen Agent Trust Hub on Sep 8, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process and help with Terraform configuration files, which are external data. While it includes commands for managing infrastructure (terraform apply, terraform import), standard platform guardrails apply to the execution of such tools.\n
  • Ingestion points: Terraform configuration files (main.tf, etc.) and variable files referenced in the skill description.\n
  • Capability inventory: Shell commands for Terraform CLI (plan, apply, state, import) documented in references/state.md.\n
  • Boundary markers: Not explicitly defined for the ingested configuration files.\n
  • Sanitization: Standard documentation providing examples without active sanitization logic for user-provided HCL.\n- [SAFE]: No malicious code, obfuscation, or unauthorized data access patterns were found. The skill follows standard industry practices for infrastructure management and uses generic placeholders for configuration values.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 8, 2026, 05:01 AM
Security Audit — agent-trust-hub — terraform-infra