aws-cognito

Pass

Audited by Gen Agent Trust Hub on Apr 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: All sensitive configuration parameters in the documentation and code examples, including AWS account IDs, client secrets, and private keys, use descriptive placeholders like YOUR_CLIENT_SECRET or 111111111111.
  • [SAFE]: The Flutter implementation relies on official AWS Amplify SDK packages (amplify_flutter and amplify_auth_cognito) for handling authentication flows, which is the recommended approach for secure integration.
  • [COMMAND_EXECUTION]: The skill includes numerous AWS CLI commands for managing user pools and identity providers. These are standard administrative actions intended for the skill's primary purpose and do not pose a security risk when executed by an authorized user.
  • [SAFE]: No evidence of prompt injection, data exfiltration, or obfuscated malicious code was found in the provided files.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 20, 2026, 11:27 AM
Security Audit — agent-trust-hub — aws-cognito