terraform-security
Pass
Audited by Gen Agent Trust Hub on Jun 21, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references industry-standard security tools including
tfsec(Aqua Security) andpre-commit-terraform. These are well-known and trusted resources for infrastructure security scanning.\n- [DATA_EXFILTRATION]: The skill provides explicit guidance on protecting sensitive information using Terraform'ssensitivetype and dedicated secret management services (Vault, AWS, Azure), which helps prevent credential exposure.\n- [COMMAND_EXECUTION]: The validation script (scripts/validate.py) uses safe methods to verify the skill's local structure and configuration, employingyaml.safe_load()for file parsing.\n- [PROMPT_INJECTION]: No malicious patterns or attempts to override agent constraints were found in the instructions or metadata.
Audit Metadata