nis2-compliance-triage-en
Pass
Audited by Gen Agent Trust Hub on Jul 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill adheres to the principle of least privilege by using the
allowed-toolsconfiguration to restrict the agent's capabilities to read-only operations, preventing unauthorized command execution or network exfiltration. - [SAFE]: A 'Human Gate' is explicitly required for all outputs, ensuring that the AI only generates drafts for human decision-makers and does not perform automated actions, legal determinations, or incident reporting.
- [SAFE]: The workflow specifically instructs the agent to verify information against authoritative official sources, such as EUR-Lex and national gazettes, rather than relying on internal knowledge or potentially outdated data.
- [SAFE]: No evidence of prompt injection, data exfiltration, obfuscation, or persistence mechanisms was found. The instructions are focused entirely on the stated purpose of NIS2 compliance triage.
Audit Metadata