skills/klh/speedy-claude/az/Gen Agent Trust Hub

az

Pass

Audited by Gen Agent Trust Hub on Sep 6, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONPRIVILEGE_ESCALATIONCOMMAND_EXECUTIONCREDENTIALS_UNSAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches the Azure CLI installer and setup scripts from official Microsoft domains (e.g., aka.ms/InstallAzureCLIDeb) during the installation process.
  • [REMOTE_CODE_EXECUTION]: The skill's setup scripts (scripts/install.sh, scripts/install.ps1) download and execute content from official sources using a shell with elevated privileges.
  • [PRIVILEGE_ESCALATION]: Setup scripts utilize the sudo command for system package management during the installation of the Azure CLI tool.
  • [COMMAND_EXECUTION]: Utility scripts wrap various Azure CLI commands to perform environmental checks, authentication validation, and resource diagnostics.
  • [CREDENTIALS_UNSAFE]: Diagnostic scripts access the standard Azure configuration directory (~/.azure) to retrieve and display information about the current authentication context.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes output from Azure CLI commands. It includes mitigation measures such as output sanitization in its diagnostic reporting script and strict safety guardrails in its prompt instructions to prevent the execution of untrusted instructions embedded in data.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 6, 2026, 10:41 AM
Security Audit — agent-trust-hub — az