triage-leaked-infra
Pass
Audited by Gen Agent Trust Hub on Jul 23, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses a variety of
aws ec2,aws s3api,aws route53, andaws iamcommands to inspect cloud resources. These are read-only operations (describe/list/head) intended for triaging infrastructure status. - [DATA_EXPOSURE]: The skill instructs the agent to query AWS account metadata, such as IAM roles, VPC tags, and S3 bucket contents. This is consistent with the stated purpose of auditing infrastructure for deletion safety.
- [REMOTE_CODE_EXECUTION]: No remote code execution or untrusted script downloads were detected. The skill relies entirely on standard AWS CLI tools for its operations.
Audit Metadata