AGENT LAB: SKILLS

cloud-cost-management

Fail

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: HIGHEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS] (LOW): The skill references 'https://aka.ms/InstallAzureCLIDeb'. Per [TRUST-SCOPE-RULE], Microsoft is a trusted organization, which downgrades the risk associated with this external reference.
  • [REMOTE_CODE_EXECUTION] (LOW): The command pipes a remote script into bash. While this is normally a Category 4 CRITICAL/HIGH risk, the severity is reduced here because it is the official, documented installation method for a core administrative tool from a trusted vendor.
  • [COMMAND_EXECUTION] (LOW): The skill executes shell commands to perform system-level installations, which is considered acceptable behavior for a skill whose primary purpose involves setting up cloud infrastructure tools.
Recommendations
  • HIGH: Downloads and executes remote code from: https://aka.ms/InstallAzureCLIDeb - DO NOT USE without thorough review
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 17, 2026, 05:06 PM