indykite-authzen-kbac

Pass

Audited by Gen Agent Trust Hub on May 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill facilitates interaction with IndyKite's KBAC authorization policies using standard tools like curl, jq, and bash scripts.
  • [SAFE]: Credential management is correctly handled through environment variables (API_KEY, BEARER_TOKEN), following security best practices to avoid hardcoded secrets.
  • [SAFE]: Network operations are directed to regional IndyKite API endpoints (eu.api.indykite.com and us.api.indykite.com), which are legitimate vendor resources for the skill's stated purpose.
  • [SAFE]: No evidence of prompt injection, obfuscation, or unauthorized persistence mechanisms was found within the instructions or provided scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
May 28, 2026, 06:53 AM
Security Audit — agent-trust-hub — indykite-authzen-kbac