Threat Detection Engineer

Pass

Audited by Gen Agent Trust Hub on Jul 23, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill documents CI/CD workflows that utilize standard package managers to install legitimate security tools such as sigma-cli and its SIEM backends from public registries.- [COMMAND_EXECUTION]: The instructions describe common security operations tasks using command-line utilities, including rule validation with sigma, API-based deployment with curl, and cloud resource management with the Azure CLI.- [PROMPT_INJECTION]: The skill outlines a process for analyzing external data sources like threat intelligence and logs; while this creates a surface for indirect prompt injection, it is a standard part of the defined security role and is mitigated by the AI platform's inherent safety guardrails.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 23, 2026, 02:36 PM
Security Audit — agent-trust-hub — Threat Detection Engineer