infisical-kms
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references official Infisical GitHub repositories for specialized integrations, such as the Kubernetes KMS plugin and Sigstore cosign plugin. These are verified vendor resources intended to extend the platform's functionality.
- [INDIRECT_PROMPT_INJECTION]: The skill handles untrusted user data (e.g., plaintext to be encrypted or ciphertext to be decrypted). It mitigates risks by instructing the agent to use Base64 encoding for data transmission and strictly prohibiting the printing of plaintext or key material. It also recommends using digests for large payloads to minimize data transfer to the KMS API.
Audit Metadata