cml-lab-lifecycle

Pass

Audited by Gen Agent Trust Hub on Mar 6, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill utilizes the 'cml-mcp' tool, which is a vendor-provided dependency required for network automation with Cisco Modeling Labs.
  • [CREDENTIALS_UNSAFE]: Authentication is managed through standard environment variables for the CML server URL and user credentials, which is a secure and conventional practice for this type of tool.
  • [DATA_EXFILTRATION]: Tools such as 'download_lab_configs' and 'export_lab' are provided for functional requirements like backing up network configurations and sharing lab topologies.
  • [PROMPT_INJECTION]: The skill includes an 'import_lab' capability that processes YAML-formatted topology data, which is an expected input format for the intended use case and shows no signs of malicious intent.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 6, 2026, 12:31 AM