cml-lab-lifecycle
Pass
Audited by Gen Agent Trust Hub on Mar 6, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill utilizes the 'cml-mcp' tool, which is a vendor-provided dependency required for network automation with Cisco Modeling Labs.
- [CREDENTIALS_UNSAFE]: Authentication is managed through standard environment variables for the CML server URL and user credentials, which is a secure and conventional practice for this type of tool.
- [DATA_EXFILTRATION]: Tools such as 'download_lab_configs' and 'export_lab' are provided for functional requirements like backing up network configurations and sharing lab topologies.
- [PROMPT_INJECTION]: The skill includes an 'import_lab' capability that processes YAML-formatted topology data, which is an expected input format for the intended use case and shows no signs of malicious intent.
Audit Metadata