skills/splunk/splunk-agent-skills/vulnerability-remediation-and-compliance-readiness/Gen Agent Trust Hub
vulnerability-remediation-and-compliance-readiness
Pass
Audited by Gen Agent Trust Hub on Aug 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is strictly read-only and explicitly prohibits mutating systems, patching endpoints, approving exceptions, or modifying tickets. These restrictions are clearly defined in the frontmatter
not-forfield and thePrerequisitessection of the instructions. - [SAFE]: Data handling instructions emphasize minimal data collection, redaction of credentials or personal identifiers, and the use of sanitized excerpts rather than broad data exports.
- [SAFE]: All external references target official Splunk documentation and public advisories (help.splunk.com). The skill correctly differentiates between documented product facts and environment-specific evidence.
- [SAFE]: The assessment framework uses a structured contract (
assessment-contract.md) to ensure that findings are evidence-backed and that gaps in information result in anunknownstatus rather than dangerous assumptions.
Audit Metadata