ovstorage-operator-configure-broker-policy

Pass

Audited by Gen Agent Trust Hub on Sep 1, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill requires the agent to read and write broker configuration files, which establishes a data ingestion surface for external content.
  • Ingestion points: Broker configuration files and policy documentation as described in the Recipe section of SKILL.md.
  • Boundary markers: The instructions do not specify the use of delimiters or markers to separate configuration data from instructions.
  • Capability inventory: The skill utilizes Read and Write tools to manage filesystem-based configurations.
  • Sanitization: The skill provides TOML templates for configuration but does not include explicit logic for sanitizing data retrieved from the configuration files.
  • [COMMAND_EXECUTION]: The instructions direct the user to perform service management actions, including sending SIGHUP signals on Unix systems or performing restarts on Windows to apply configuration changes. These are routine administrative tasks related to the skill's primary purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 1, 2026, 02:50 PM
Security Audit — agent-trust-hub — ovstorage-operator-configure-broker-policy