aws-toolkit
Pass
Audited by Gen Agent Trust Hub on Aug 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows industry-standard security practices for AWS, specifically the Well-Architected Framework. It mandates a 'managed-first' approach to reduce operational overhead and security risk.
- [SAFE]: It enforces strict security baselines, including mandatory encryption (KMS/TLS), least-privilege IAM policies, and the removal of long-lived access keys.
- [COMMAND_EXECUTION]: The skill incorporates standard security linting and policy-as-code tools such as checkov, tfsec, and trivy to audit generated infrastructure code.
- [COMMAND_EXECUTION]: The workflow includes mandatory human review gates for all infrastructure mutations (e.g., terraform plan and cdk diff), ensuring that no changes are applied autonomously without verification.
Audit Metadata