cost-governance

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFE
Full Analysis
  • Secure Data Handling Practices: The skill explicitly instructs the agent to avoid using shells or local interpreters (Bash, Python, etc.) to parse or aggregate data returned from tools. This mitigates risks associated with command injection or unexpected execution when processing untrusted data from external APIs.
  • Controlled Administrative Operations: All write operations, such as creating budgets, require explicit user confirmation of scope, amounts, and recipients. The instructions also prevent silent overwriting of existing configurations, ensuring user oversight for administrative changes.
  • Safe Tool Fallback Mechanisms: The skill provides a fallback path to standard Azure management tools (Azure CLI, PowerShell) when platform-native tools are unavailable. These instructions specifically mandate that access tokens must never be exposed and that these tools should not be used for data parsing, maintaining a strong security posture during fallback scenarios.
  • Trusted Resource Usage: The skill utilizes official Azure APIs and Resource Graph queries for governance tasks. As these are standard administrative interfaces provided by the vendor, their use is consistent with the skill's intended management purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 05:07 PM
Security Audit — agent-trust-hub — cost-governance