devops-engineer

Fail

Audited by Gen Agent Trust Hub on Sep 5, 2026

Risk Level: CRITICALCREDENTIALS_UNSAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPRIVILEGE_ESCALATIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [CREDENTIALS_UNSAFE]: Reference files for Kubernetes and Docker include hardcoded database connection strings with default credentials such as 'postgres://user:pass@host:5432/db'.
  • [EXTERNAL_DOWNLOADS]: The skill metadata and documentation point to a domain (jeffallan.github.io) that has been flagged as malicious and blacklisted by automated security scanners.
  • [COMMAND_EXECUTION]: The skill workflow and reference guides provide scripts for executing high-impact commands, including 'kubectl rollout undo' and 'git push' operations for infrastructure management.
  • [PRIVILEGE_ESCALATION]: The skill provides templates for running 'tcpdump' inside production containers using 'kubectl exec', a sensitive operation that requires root privileges and provides unauthorized access to network traffic.
  • [INDIRECT_PROMPT_INJECTION]: The incident response workflow relies on ingesting untrusted data sources like application logs ('kubectl logs') and database activity ('pg_stat_activity'). The lack of boundary markers or sanitization allows malicious content in logs to potentially influence the agent's behavior during automated remediation steps.
Recommendations
  • CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
  • AI detected serious security threats
  • Contains 2 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Sep 5, 2026, 11:38 AM
Security Audit — agent-trust-hub — devops-engineer