google-cloud-solution-build-deploy-agents

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-provided functional and non-functional requirements to generate technical designs, Infrastructure as Code (IaC), and deployment instructions. This ingestion of untrusted data represents a potential attack surface. However, the skill proactively mitigates this risk by instructing the agent to recommend 'Model Armor' for real-time safety and prompt injection inspection, and by requiring human-in-the-loop approval at every phase of the workflow.
  • [COMMAND_EXECUTION]: The workflow involves generating and instructing the user to execute administrative and deployment commands using tools like gcloud, terraform, and agents-cli. These commands are standard for the skill's intended purpose of cloud resource management and are presented to the user for review and manual execution rather than being executed silently by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 05:40 AM
Security Audit — agent-trust-hub — google-cloud-solution-build-deploy-agents