sink-s3-jsonl
Pass
Audited by Gen Agent Trust Hub on Apr 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill correctly implements its documented purpose of writing JSONL data to Amazon S3 using the official Boto3 library.- [SAFE]: Input validation is performed on S3 bucket names and prefixes using regular expressions in
src/sink.pyto prevent malformed requests or path injection.- [SAFE]: The execution flow is safe by default, using a dry-run mode unless the--applyflag is explicitly provided by the user.- [SAFE]: The skill uses standard AWS SDK credential management patterns, ensuring that secrets are managed via environment variables or workload identity rather than being hardcoded.- [PROMPT_INJECTION]: The skill possesses an ingestion surface for untrusted data that enters viasys.stdin. \u2022 Ingestion points: Data is read fromsys.stdininsrc/sink.pyand converted to JSON. \u2022 Boundary markers: The data is treated as an opaque payload and is not delimited from instructions. \u2022 Capability inventory: The skill has the capability to write objects to S3 using theput_objectAPI. \u2022 Sanitization: The script validates that input is well-formed JSON usingjson.loadsbefore processing, ensuring structural integrity of the sink operation.
Audit Metadata