azure-rbac
Pass
Audited by Gen Agent Trust Hub on Jun 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or unauthorized data access behaviors were detected. The skill's functionality aligns with its described purpose and uses official Microsoft-branded tools.
- [PROMPT_INJECTION]: The skill exhibits a surface for indirect prompt injection. 1. Ingestion points: Data enters the context via the 'azure__documentation' tool (SKILL.md). 2. Boundary markers: There are no specific delimiters or instructions provided to the agent to ignore embedded instructions within retrieved documentation. 3. Capability inventory: The skill utilizes 'azure__extension_cli_generate' and 'azure__bicepschema' (SKILL.md) to generate executable CLI commands and infrastructure code. 4. Sanitization: No explicit filtering or sanitization of the retrieved documentation content is performed before it is used to generate code. However, given the source is official Azure documentation, the operational risk is minimal.
Audit Metadata