aws-secrets-manager

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE] (SAFE): No security issues detected. The skill contains legitimate instructions for interacting with the AWS Secrets Manager service using the AWS CLI and the boto3 Python library. Example passwords used in the documentation (e.g., 'secret123') are clearly placeholders for educational purposes. No evidence of prompt injection, data exfiltration, or persistence mechanisms was found. Indirect prompt injection surface (Category 8) assessment: Ingestion points: AWS Secrets Manager API (SKILL.md, references/secrets-patterns.md); Boundary markers: Absent; Capability inventory: aws CLI secret management operations; Sanitization: Absent. The identified surface is necessary for the skill's stated purpose and is considered SAFE in this context.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:39 PM