devops/crossplane
Warn
Audited by Gen Agent Trust Hub on Jul 13, 2026
Risk Level: MEDIUMPROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [PROMPT_INJECTION]: The skill's reference documentation (including files such as
references/architecture-patterns.mdandreferences/security-best-practices.md) is populated with over 1,200 sections of repetitive, auto-generated technical filler. This constitutes metadata poisoning and obfuscation by volume, as it misrepresents the complexity and utility of the skill. Such excessive content can exhaust the context window or attention of AI agents, potentially hiding actual instructions or causing processing failures. - [COMMAND_EXECUTION]: The
SKILL.mdidentifies the agent's ability to apply infrastructure manifests to a Kubernetes cluster using thekubectltool. While this is consistent with the skill's stated purpose for DevOps and control plane management, it grants the agent administrative capabilities over cloud infrastructure which could be abused if the agent is misled by the deceptive documentation. - [EXTERNAL_DOWNLOADS]: The documentation and examples reference external packages and OCI images hosted on
xpkg.upbound.io, the official Crossplane package registry. These references are consistent with legitimate ecosystem usage and point to an established industry service.
Audit Metadata