agent-bom-scan-infra

Pass

Audited by Gen Agent Trust Hub on Jun 19, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches the 'agent-bom' utility from the official PyPI registry. This tool is the core component of the skill's scanning capabilities and originates from the author 'msaad00'.
  • [COMMAND_EXECUTION]: Executes shell commands via the 'agent-bom' CLI to perform infrastructure audits and secret detection.
  • [SAFE]: No malicious patterns detected. The skill follows security best practices by requiring user confirmation for sensitive cloud operations and restricting data flow to local environments and official cloud endpoints.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 19, 2026, 03:48 PM
Security Audit — agent-trust-hub — agent-bom-scan-infra