cloud-provisioning
Pass
Audited by Gen Agent Trust Hub on Jun 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill facilitates the onboarding of cloud credentials for major providers (AWS, Azure, GCP) with a strong focus on security best practices. It provides predefined IAM policies and custom roles that follow the principle of least privilege, restricting access to compute-specific operations.
- [COMMAND_EXECUTION]: The included verification scripts and instructions utilize standard cloud CLI tools (AWS CLI, Azure CLI, and Google Cloud SDK) for legitimate administrative and testing purposes. These operations are transparent and well-documented.
- [EXTERNAL_DOWNLOADS]: The documentation instructs the user to install official, well-known Python SDKs (boto3, azure-identity, google-cloud-iam, etc.) from standard package registries. These dependencies are necessary for cloud interaction and originate from trusted providers.
- [CREDENTIALS_UNSAFE]: While the skill's primary purpose is handling sensitive credentials, it explicitly instructs users on secure handling practices. This includes warnings about one-time secret visibility and the use of a local vault script for storage, rather than hardcoding or logging secrets.
Audit Metadata