terraform-data-engineering-infrastructure

Warn

Audited by Gen Agent Trust Hub on Oct 1, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONPRIVILEGE_ESCALATION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to clone a project repository from a third-party GitHub account (github.com/josephmachado/iac-for-data-engineering-terraform-.git).
  • [REMOTE_CODE_EXECUTION]: Following the download, instructions guide the user to execute terraform apply, which runs the downloaded infrastructure-as-code scripts to provision resources on AWS.
  • [COMMAND_EXECUTION]: Includes shell commands for sensitive operations such as creating IAM access keys (aws iam create-access-key) and configuring local AWS credentials.
  • [PRIVILEGE_ESCALATION]: Recommends granting broad administrative access policies (AmazonS3FullAccess, AmazonEC2FullAccess, IAMFullAccess) to the IAM user, which exceeds least-privilege best practices.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Oct 1, 2026, 01:35 PM
Security Audit — agent-trust-hub — terraform-data-engineering-infrastructure