terraform-data-engineering-infrastructure
Warn
Audited by Gen Agent Trust Hub on Oct 1, 2026
Risk Level: MEDIUMEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONPRIVILEGE_ESCALATION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to clone a project repository from a third-party GitHub account (
github.com/josephmachado/iac-for-data-engineering-terraform-.git). - [REMOTE_CODE_EXECUTION]: Following the download, instructions guide the user to execute
terraform apply, which runs the downloaded infrastructure-as-code scripts to provision resources on AWS. - [COMMAND_EXECUTION]: Includes shell commands for sensitive operations such as creating IAM access keys (
aws iam create-access-key) and configuring local AWS credentials. - [PRIVILEGE_ESCALATION]: Recommends granting broad administrative access policies (
AmazonS3FullAccess,AmazonEC2FullAccess,IAMFullAccess) to the IAM user, which exceeds least-privilege best practices.
Audit Metadata