azure-provision

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: Interacts with a local vault binary located at ~/.local/bin/vault to securely store and retrieve Azure service principal credentials and resource keys. This allows the skill to handle sensitive data without exposing it to local process lists via command-line arguments.
  • [DATA_EXPOSURE]: Handles sensitive credentials including client secrets and API keys. The skill implements security-conscious workflows by ensuring secrets are piped into storage via standard input and verifying account identities before performing any provisioning tasks.
  • [SAFE]: All network operations are directed toward official Microsoft Azure domains for authentication and resource management. The skill is designed for administrative automation and follows established patterns for managing cloud identities in restricted environments.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 03:23 PM
Security Audit — agent-trust-hub — azure-provision