aws-lambda-managed-instances
Fail
Audited by Gen Agent Trust Hub on Sep 7, 2026
Risk Level: CRITICALINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- Indirect Prompt Injection Surface: The skill processes user-supplied data regarding traffic patterns, current expenditures, and runtime environment details. This data ingestion path, found primarily in Step 1 of the assessment workflow, constitutes a surface where adversarial content could attempt to influence the agent's logic. This is notable because the skill generates infrastructure management commands and templates (as seen in the CLI workflow and SAM templates), though the process incorporates recommended manual review steps.- External Resource References: The skill provides links to an external pricing calculator located at a vendor-related domain (aws-samples.github.io). Although automated scanners flagged these links, they are documented as resources for workload estimation and represent common vendor tooling.- Infrastructure Management Best Practices: The skill's guidance for setting up IAM roles and VPC configurations in infrastructure-setup.md includes several security controls. Specifically, the templates use policy conditions such as
aws:SourceAccountandec2:ManagedResourceOperatorto enforce account-level isolation and limit the scope of management actions, which helps prevent unintended resource modifications.
Recommendations
- CRITICAL: 2 file(s) identified as malware by FileRep - DO NOT USE
- Contains 2 malicious URL(s) - DO NOT USE
Audit Metadata