service-cost-analysis

Pass

Audited by Gen Agent Trust Hub on Mar 24, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Retrieves pricing information from well-known and official cloud service documentation, such as AWS, GCP, and Azure pricing pages.\n- [COMMAND_EXECUTION]: Includes a functional example for running a local Python script to generate diagrams for cost visualization and scenario modeling.\n- [PROMPT_INJECTION]: The skill ingests data from external websites, creating a surface for indirect prompt injection where malicious instructions could be embedded in the fetched content.\n
  • Ingestion points: Pricing data retrieved through WebFetch and WebSearch tools as described in SKILL.md.\n
  • Boundary markers: None identified to separate external data from the agent's core instructions.\n
  • Capability inventory: The skill utilizes Bash, Write, and Edit tools, which allow for command execution and file management.\n
  • Sanitization: No validation or sanitization of the external web content is specified before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 24, 2026, 11:17 AM