eg-service-mesh
Pass
Audited by Gen Agent Trust Hub on May 9, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill installs software using the official Envoy Gateway Helm chart from a well-known repository (
oci://docker.io/envoyproxy/gateway-helm). This is a standard and expected source for this component. - [COMMAND_EXECUTION]: The workflow includes several shell commands using
kubectl,helm, andistioctlto assess cluster state and perform installations. These commands are appropriate for the skill's stated purpose of managing Kubernetes infrastructure. - [DATA_EXPOSURE & EXFILTRATION]: The skill provides instructions to extract a CA certificate from a Kubernetes secret to establish trust in a service mesh. This is a standard procedure for configuring mTLS and does not involve the exfiltration of private keys or sensitive user credentials.
Audit Metadata