triage-leaked-infra

Pass

Audited by Gen Agent Trust Hub on Jul 23, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses a variety of aws ec2, aws s3api, aws route53, and aws iam commands to inspect cloud resources. These are read-only operations (describe/list/head) intended for triaging infrastructure status.
  • [DATA_EXPOSURE]: The skill instructs the agent to query AWS account metadata, such as IAM roles, VPC tags, and S3 bucket contents. This is consistent with the stated purpose of auditing infrastructure for deletion safety.
  • [REMOTE_CODE_EXECUTION]: No remote code execution or untrusted script downloads were detected. The skill relies entirely on standard AWS CLI tools for its operations.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 23, 2026, 10:44 PM
Security Audit — agent-trust-hub — triage-leaked-infra