splunk-inspector-expert

Pass

Audited by Gen Agent Trust Hub on Jul 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of markdown instructions and guidance for analyzing Splunk configuration output. It does not contain any executable scripts, binary files, network requests, or credential exposure patterns.- [INDIRECT_PROMPT_INJECTION]: The skill is designed to interpret output from an external tool stored in ~/.cache/claude-grc/findings/splunk-inspector/. While this constitutes a data ingestion surface, the risk is minimal as the skill lacks any capabilities for execution or further data transfer.
  • Ingestion points: JSON findings located at ~/.cache/claude-grc/findings/splunk-inspector/<run_id>.json.
  • Boundary markers: None defined in the instructions.
  • Capability inventory: The skill contains no code, shell commands, or network operations.
  • Sanitization: Not explicitly defined for the ingested JSON content.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 27, 2026, 12:27 PM
Security Audit — agent-trust-hub — splunk-inspector-expert