devops-engineer
Fail
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: CRITICALCREDENTIALS_UNSAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPRIVILEGE_ESCALATIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [CREDENTIALS_UNSAFE]: Reference files for Kubernetes and Docker include hardcoded database connection strings with default credentials such as 'postgres://user:pass@host:5432/db'.
- [EXTERNAL_DOWNLOADS]: The skill metadata and documentation point to a domain (jeffallan.github.io) that has been flagged as malicious and blacklisted by automated security scanners.
- [COMMAND_EXECUTION]: The skill workflow and reference guides provide scripts for executing high-impact commands, including 'kubectl rollout undo' and 'git push' operations for infrastructure management.
- [PRIVILEGE_ESCALATION]: The skill provides templates for running 'tcpdump' inside production containers using 'kubectl exec', a sensitive operation that requires root privileges and provides unauthorized access to network traffic.
- [INDIRECT_PROMPT_INJECTION]: The incident response workflow relies on ingesting untrusted data sources like application logs ('kubectl logs') and database activity ('pg_stat_activity'). The lack of boundary markers or sanitization allows malicious content in logs to potentially influence the agent's behavior during automated remediation steps.
Recommendations
- CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
- AI detected serious security threats
- Contains 2 malicious URL(s) - DO NOT USE
Audit Metadata