azure-app-onboard-prereq

Pass

Audited by Gen Agent Trust Hub on Jul 26, 2026

Risk Level: SAFE
Full Analysis
  • [Build-Validation Security Controls]: The skill enforces an absolute prohibition on unauthorized package installation and build commands. Any execution of build or test scripts requires an explicit, per-command consent prompt from the user, preventing automated execution of potentially risky repository scripts.
  • [Static Analysis Approach]: Most evaluation tasks, including dependency compatibility and completeness checks, are performed using static analysis of project manifests and configuration files rather than runtime execution, minimizing the risk of side effects from analyzing untrusted code.
  • [Local Session Management]: The skill manages state through local artifacts stored in a dedicated session directory. This structured approach to data persistence allows for session resumption while maintaining clear boundaries for where evaluation data is stored.
  • [Repository Ingestion Surface]: As the skill is designed to analyze arbitrary repository content, it is inherently exposed to data from untrusted sources. The implementation mitigates risks by using structured evaluation axes and explicit remediation protocols that prioritize user oversight.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 26, 2026, 08:30 AM
Security Audit — agent-trust-hub — azure-app-onboard-prereq