aws-cdk-development

Pass

Audited by Gen Agent Trust Hub on May 12, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill recommends installing cdk-nag from the official npm registry. This is a well-known community tool maintained within the AWS ecosystem for synthesis-time validation.
  • [COMMAND_EXECUTION]: Instructions include performing standard development tasks such as cdk synth and executing a local validation script (./scripts/validate-stack.sh) to ensure stack integrity before deployment. These actions are aligned with the skill's primary purpose.
  • [DATA_EXFILTRATION]: The instructions emphasize security boundaries through account-level isolation and discourage hardcoding resource names, which aligns with the AWS Well-Architected Security Pillar. No patterns of unauthorized data collection or exfiltration were found.
Audit Metadata
Risk Level
SAFE
Analyzed
May 12, 2026, 03:28 AM