aws-auth

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • Indirect Prompt Injection Surface: The skill outlines processes for ingesting and acting upon external data, including user identity tokens and claims. This represents an indirect prompt injection surface; however, the skill provides specific remediation guidance, such as using the aws-jwt-verify library for signature and claim validation to ensure data integrity.
  • Administrative Command Execution: The instructions include various CLI commands for managing cloud authentication resources. These examples demonstrate security awareness, such as advising the use of temporary files with restricted permissions to handle sensitive configuration details, which helps prevent credential exposure in logs or process lists.
  • Utilization of Trusted External Resources: The skill references official service documentation and established open-source libraries from trusted organizations. These resources are recommended for tasks like secure JWT verification and implementing standard authentication flows.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 09:17 PM
Security Audit — agent-trust-hub — aws-auth