model-serving-security
Pass
Audited by Gen Agent Trust Hub on Apr 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements 20 automated security checks mapped to industry standards like MITRE ATLAS and NIST AI RMF to audit infrastructure configurations.- [SAFE]: The tool operates entirely offline and read-only, parsing local configuration files for SageMaker, Vertex AI, and Azure ML without requiring network access or cloud SDKs.- [SAFE]: Secret detection logic in the checks.py script uses regex patterns to identify potential credentials in user-provided files for auditing purposes only; no data exfiltration or external transmission was detected.- [SAFE]: The skill's architecture is strictly limited to parsing and reporting, with no identified vectors for command injection, persistence, or privilege escalation.
Audit Metadata