infra-portforward
Warn
Audited by Gen Agent Trust Hub on Jun 23, 2026
Risk Level: MEDIUMCREDENTIALS_UNSAFECOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
- [CREDENTIALS_UNSAFE]: The skill provides automated commands to extract passwords and authentication definitions from Kubernetes secrets.
- Evidence in
SKILL.md: Commands to fetch and decoderabbitmq-passwordandrabbitmq-definitions-secretusingkubectlandbase64decoding. - [COMMAND_EXECUTION]: Employs high-privilege container operations to read internal configuration files.
- Evidence in
SKILL.md: Useskubectl execto accessproduction.config.jswithin application pods to retrieve PostgreSQL connection strings. - [DATA_EXFILTRATION]: The workflow involves moving cluster-internal sensitive data (secrets and credentials) into the agent's active execution context.
- Evidence: Systematic extraction of credentials for RabbitMQ and PostgreSQL services as a prerequisite for establishing connectivity.
Audit Metadata