agent-platform-endpoint-management

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill leverages the gcloud CLI to manage cloud infrastructure. It provides specific command templates for interacting with Google Cloud's AI Platform services, including creating, updating, and deleting endpoint resources.
  • [INDIRECT_PROMPT_INJECTION]: The skill uses variables such as $PROJECT_ID, $LOCATION_ID, and $ENDPOINT_ID within shell commands, creating a potential surface for injection if user-supplied values are not handled correctly. However, this is mitigated by strict instruction tiers (Tier M and Tier D) that mandate the agent must wait for explicit, typed user confirmation and display the exact literal command before any execution occurs.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 05:40 AM
Security Audit — agent-trust-hub — agent-platform-endpoint-management