eg-service-mesh

Pass

Audited by Gen Agent Trust Hub on May 9, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs software using the official Envoy Gateway Helm chart from a well-known repository (oci://docker.io/envoyproxy/gateway-helm). This is a standard and expected source for this component.
  • [COMMAND_EXECUTION]: The workflow includes several shell commands using kubectl, helm, and istioctl to assess cluster state and perform installations. These commands are appropriate for the skill's stated purpose of managing Kubernetes infrastructure.
  • [DATA_EXPOSURE & EXFILTRATION]: The skill provides instructions to extract a CA certificate from a Kubernetes secret to establish trust in a service mesh. This is a standard procedure for configuring mTLS and does not involve the exfiltration of private keys or sensitive user credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
May 9, 2026, 04:53 PM
Security Audit — agent-trust-hub — eg-service-mesh