splunk-inspector-expert
Pass
Audited by Gen Agent Trust Hub on Jul 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists of markdown instructions and guidance for analyzing Splunk configuration output. It does not contain any executable scripts, binary files, network requests, or credential exposure patterns.- [INDIRECT_PROMPT_INJECTION]: The skill is designed to interpret output from an external tool stored in
~/.cache/claude-grc/findings/splunk-inspector/. While this constitutes a data ingestion surface, the risk is minimal as the skill lacks any capabilities for execution or further data transfer. - Ingestion points: JSON findings located at
~/.cache/claude-grc/findings/splunk-inspector/<run_id>.json. - Boundary markers: None defined in the instructions.
- Capability inventory: The skill contains no code, shell commands, or network operations.
- Sanitization: Not explicitly defined for the ingested JSON content.
Audit Metadata