gke-cost-analysis
Pass
Audited by Gen Agent Trust Hub on Sep 18, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection due to the ingestion of external data.
- Ingestion points: Data enters the agent context from BigQuery billing export results and
kubectl topoutput mentioned inSKILL.md. - Boundary markers: The skill lacks explicit instructions for using delimiters or boundary markers to isolate external data.
- Capability inventory: The skill provides templates for using
bq,gcloud, andkubectlto inspect and configure GKE resources. - Sanitization: No sanitization or escaping mechanisms are defined for the data retrieved from external sources before the agent processes it.
Audit Metadata