G-Pilot Google Provisioning
Pass
Audited by Gen Agent Trust Hub on Feb 21, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE] (SAFE): The file is exclusively markdown documentation. It does not contain any executable scripts, shell commands, or automation logic that could be abused at runtime.- [CREDENTIALS_UNSAFE] (SAFE): While the document describes the use of Google Cloud Service Account JSON keys and suggests storing them as Base64, it does not contain any hardcoded credentials, tokens, or actual secrets.- [PROMPT_INJECTION] (SAFE): There are no instructions present that attempt to override agent behavior, bypass safety filters, or extract system prompts.- [DATA_EXFILTRATION] (SAFE): The skill does not contain any code for file access or network operations. It describes an architectural flow for credential management but lacks the means to perform exfiltration.- [PRIVILEGE_ESCALATION] (LOW): The protocol recommends the use of high-privilege IAM roles such as 'Service Account Token Creator' and 'Domain-Wide Delegation'. These are standard requirements for the described service integration and do not constitute a security vulnerability in the context of this documentation.
Audit Metadata