azure-app-onboard-prereq

Pass

Audited by Gen Agent Trust Hub on Aug 21, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • Controlled Command Execution: The skill includes a build-validation gate that can execute standard package manager commands (e.g., npm install, pip install) to verify repository health. This functionality is protected by an explicit consent gate requiring the user to approve each command individually, maintaining human-in-the-loop control.- Source Code Remediation and Generation: The agent has the capability to modify user source code to resolve identified deployment blockers or scaffold new starter projects. These actions are limited to the remediation and zero-code phases and are performed with user oversight.- Static Analysis of Repository Content: The skill performs extensive scanning of repository artifacts, including dependency manifests, source code imports, and configuration files. This data ingestion is used to provide deployment verdicts and recommendations, and includes specific logic to identify and halt on intentionally vulnerable applications.- Platform Tooling Integration: The skill integrates with official Azure CLI tools for subscription and user identity resolution. This is a standard and expected behavior for a tool designed to facilitate deployment to the Azure platform, utilizing the user's existing authenticated context.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 21, 2026, 04:02 PM
Security Audit — agent-trust-hub — azure-app-onboard-prereq