eventhouse-cli

Pass

Audited by Gen Agent Trust Hub on Aug 9, 2026

Risk Level: SAFE
Full Analysis
  • Official Service Integration: The skill exclusively targets verified Microsoft service domains, such as api.fabric.microsoft.com and kusto.kusto.windows.net. This alignment ensures that operations are conducted within the intended enterprise environment.
  • Secure Command Handling: The instructions advocate for writing command bodies to temporary files before execution. This is a recognized best practice for CLI interactions to prevent shell interpolation issues and potential injection vulnerabilities when handling complex KQL queries.
  • Role-Based Permission Checks: The skill includes explicit steps for the agent to discover and verify its authorization level (e.g., Admin, Ingestor, or Viewer) within the target database before attempting to execute commands, adhering to the principle of least privilege.
  • Controlled Telemetry and Updates: The skill includes instructions for standard telemetry headers and version checks, which are routine practices for maintaining and monitoring official developer tools. The update mechanisms rely on platform-native skill invocation or standard local file comparisons.
  • Infrastructure-as-Code Patterns: The provided templates for Bash and PowerShell use standard, transparent patterns for managing cloud resources, facilitating legitimate administrative workflows without hidden or obfuscated behaviors.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 9, 2026, 08:57 AM
Security Audit — agent-trust-hub — eventhouse-cli