stigg-governance

Pass

Audited by Gen Agent Trust Hub on Jul 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a legitimate tool for orchestrating Stigg Governance API operations. It instructs the agent on how to use the Stigg TypeScript SDK via the MCP execute tool to manage entity hierarchies, assignments, and usage reporting. No malicious instructions or bypass attempts were found.
  • [SAFE]: All network operations and API calls target the official Stigg infrastructure. No sensitive data exfiltration or unauthorized credential access was identified. Per best practices, credentials and connection settings are delegated to the stigg-mcp skill.
  • [SAFE]: The skill does not contain any obfuscated code, hidden URLs, or remote execution of untrusted scripts. All referenced resources and packages are consistent with the vendor's own services.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 23, 2026, 01:46 PM
Security Audit — agent-trust-hub — stigg-governance