scaffold

Pass

Audited by Gen Agent Trust Hub on Sep 8, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSDYNAMIC_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill incorporates comprehensive security controls as core requirements, such as mandatory IAM least privilege, network isolation, and encryption of state files.
  • [EXTERNAL_DOWNLOADS]: The skill references industry-standard security and cost-estimation tools (e.g., Infracost, Checkov, tfsec, gitleaks) from their official and reputable sources.
  • [DYNAMIC_EXECUTION]: The skill provides templates for generating AWS CDK and Docker Compose configurations. This dynamic generation of infrastructure code is the primary intended function of the skill and follows standard scaffolding patterns.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external infrastructure requirements. While this represents a potential attack surface, the skill effectively mitigates risk by requiring strict validation, linting, and policy-as-code checks (e.g., OPA, Sentinel) before any code is applied to a cluster.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 8, 2026, 06:55 AM
Security Audit — agent-trust-hub — scaffold