aws-serverless

Pass

Audited by Gen Agent Trust Hub on Jul 24, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's content is composed of technical reference documentation and standardized code templates for AWS serverless development. No malicious patterns, obfuscation, or unauthorized network operations were detected.
  • [SAFE]: The instructions emphasize security best practices, specifically warning against wildcard CORS configurations (CWE-942), advising on the use of Secrets Manager over environment variables for sensitive data, and recommending structured input validation at the function boundary.
  • [SAFE]: All external links point to official AWS documentation or well-known technical resources (e.g., GitHub, Powertools documentation). No suspicious or obfuscated URLs are present.
  • [SAFE]: The provided Python handler template (assets/powertools-handler.py) uses the legitimate AWS Lambda Powertools library for observability and idempotency without introducing any insecure behaviors.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 24, 2026, 03:59 PM
Security Audit — agent-trust-hub — aws-serverless