aws-solution-architect

Pass

Audited by Gen Agent Trust Hub on Apr 12, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's behavior is consistent with its stated purpose as an AWS architecture design and documentation tool. No malicious findings or suspicious patterns were identified across the analyzed files.
  • [COMMAND_EXECUTION]: The skill instructs the agent to run local Python scripts and standard AWS CLI commands to perform architecture analysis, generate templates, and manage deployments.
  • [PROMPT_INJECTION]: The skill ingests data from user-supplied input files (e.g., requirements.json, inventory.json) and interpolates values directly into generated IaC templates and architecture descriptions. This represents an indirect prompt injection surface as inputs are not explicitly sanitized. Ingestion points: scripts/architecture_designer.py, scripts/cost_optimizer.py, and scripts/serverless_stack.py. Boundary markers: None identified. Capability inventory: Generates infrastructure configurations and suggests shell commands for AWS management. Sanitization: None identified in the script logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 12, 2026, 08:16 AM
Security Audit — agent-trust-hub — aws-solution-architect