mastering-aws-cdk

Pass

Audited by Gen Agent Trust Hub on May 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate guidance and code snippets for AWS CDK infrastructure-as-code development. All documentation and examples align with official AWS best practices.
  • [COMMAND_EXECUTION]: The skill includes standard AWS CDK CLI commands (e.g., cdk synth, cdk deploy, cdk diff) required for infrastructure management. These commands are used as intended within the context of the skill's purpose.
  • [EXTERNAL_DOWNLOADS]: References to external resources include well-known GitHub Actions and NPM packages (e.g., aws-cdk-lib, cdk-nag) from trusted providers. These are standard dependencies for the target development environment.
  • [CREDENTIALS_UNSAFE]: The skill does not contain hardcoded credentials. It specifically instructs users on how to set up secure, short-lived authentication via OpenID Connect (OIDC) for GitHub Actions and recommends using AWS Secrets Manager for sensitive data.
Audit Metadata
Risk Level
SAFE
Analyzed
May 19, 2026, 03:52 PM
Security Audit — agent-trust-hub — mastering-aws-cdk