cost-reducer

Pass

Audited by Gen Agent Trust Hub on Mar 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of markdown reference files (cloud-and-infra.md, code-level-savings.md, services-and-finops.md) containing educational content and engineering advice. No executable scripts or automated workflows are included.
  • [COMMAND_EXECUTION]: The reference files contain numerous examples of AWS CLI (aws s3api, aws logs), Kubernetes (kubectl top), and Node.js (npx webpack-bundle-analyzer) commands. These are presented as educational snippets for cost optimization and represent standard administrative tasks.
  • [PROMPT_INJECTION]: The skill processes user-supplied areas for optimization via the $ARGUMENTS parameter. Ingestion points: $ARGUMENTS in SKILL.md and user-provided code/infrastructure descriptions. Boundary markers: None. Capability inventory: The agent's ability to provide technical advice and reference internal markdown files. Sanitization: None. This surface is characteristic of an advisory engineering assistant and poses no direct security risk in its current form.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 27, 2026, 12:42 AM
Security Audit — agent-trust-hub — cost-reducer