status-page-weapon

Pass

Audited by Gen Agent Trust Hub on Jul 25, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists primarily of Markdown documentation and templates. It provides technical guidance on using third-party SaaS platforms like Atlassian Statuspage, Better Stack, and Instatus.
  • [COMMAND_EXECUTION]: While the skill contains shell command examples (e.g., curl commands for API interaction in guides/05-automation-integration.md), these are provided as instructional snippets for the user or the agent to follow in a legitimate context. They do not represent autonomous or hidden command execution.
  • [CREDENTIALS_UNSAFE]: The skill mentions API keys and tokens but only in the context of documentation placeholders (e.g., {api_key}) or as recommendations for secure secret management in CI/CD pipelines (e.g., using GitHub Actions secrets). No hardcoded credentials were found.
  • [PROMPT_INJECTION]: The instructions are focused on providing expertise in status page management. There are no attempts to override the agent's system prompt or bypass safety filters.
  • [DATA_EXFILTRATION]: No network operations to unknown or suspicious domains were found. All mentioned domains (e.g., statuspage.io, betterstack.com, instatus.com) are official service endpoints relevant to the skill's purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 25, 2026, 03:22 AM
Security Audit — agent-trust-hub — status-page-weapon