stigg-governance
Pass
Audited by Gen Agent Trust Hub on Jul 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a legitimate tool for orchestrating Stigg Governance API operations. It instructs the agent on how to use the Stigg TypeScript SDK via the MCP
executetool to manage entity hierarchies, assignments, and usage reporting. No malicious instructions or bypass attempts were found. - [SAFE]: All network operations and API calls target the official Stigg infrastructure. No sensitive data exfiltration or unauthorized credential access was identified. Per best practices, credentials and connection settings are delegated to the
stigg-mcpskill. - [SAFE]: The skill does not contain any obfuscated code, hidden URLs, or remote execution of untrusted scripts. All referenced resources and packages are consistent with the vendor's own services.
Audit Metadata