Threat Detection Engineer
Pass
Audited by Gen Agent Trust Hub on Jul 23, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill documents CI/CD workflows that utilize standard package managers to install legitimate security tools such as sigma-cli and its SIEM backends from public registries.- [COMMAND_EXECUTION]: The instructions describe common security operations tasks using command-line utilities, including rule validation with sigma, API-based deployment with curl, and cloud resource management with the Azure CLI.- [PROMPT_INJECTION]: The skill outlines a process for analyzing external data sources like threat intelligence and logs; while this creates a surface for indirect prompt injection, it is a standard part of the defined security role and is mitigated by the AI platform's inherent safety guardrails.
Audit Metadata