aws-strands
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill is coherently aligned with its stated purpose of enabling model-agnostic Strands-powered agents with ReAct and multi-agent patterns, including AWS AgentCore integration. Its footprint relies on standard package registries and official SDKs, with no evident credential harvesting or unsafe download-execute patterns in the provided excerpts. The primary security considerations are typical for cloud-integrated agent runtimes (IAM scopes, network access, and data handling in memory). Overall, the risk posture is modest and within expected bounds for a developer tooling framework. Recommend monitoring IAM permissions and ensuring explicit consent for data flow to external services.
Confidence: 98%
Audit Metadata