powershell-expert

Pass

Audited by Gen Agent Trust Hub on Oct 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides extensive documentation on secure PowerShell patterns, including the use of Microsoft.PowerShell.SecretManagement for credential handling instead of hardcoding secrets.
  • [SAFE]: Explicit 'Iron Laws' and 'Anti-Patterns' sections warn against dangerous functions like Invoke-Expression (IEX) on untrusted input, which is a common vector for command injection.
  • [SAFE]: The skill incorporates industry-standard security tools such as PSScriptAnalyzer for static analysis and Pester for unit testing within its recommended workflows.
  • [SAFE]: All external module references (such as Az, AWS.Tools, and Pester) target official repositories and well-known services, adhering to established DevOps best practices.
  • [SAFE]: The skill structure uses standard templates and scaffolds that do not contain any hidden executable logic or obfuscated commands.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 2, 2026, 02:12 PM
Security Audit — agent-trust-hub — powershell-expert