gateway-routing

Pass

Audited by Gen Agent Trust Hub on Apr 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides instructional content for Kubernetes platform management without including malicious code or hidden logic. It focuses on the proper configuration of HTTPRoutes, Gateways, and WAF plugins within an Istio-managed environment.
  • [EXTERNAL_DOWNLOADS]: The skill references a Coraza WAF WASM module hosted on GitHub Container Registry (ghcr.io) and Kubernetes schemas from Cloudflare Pages. Both are recognized as well-known and trusted services for infrastructure configuration.
  • [CREDENTIALS_UNSAFE]: The skill follows secure credential management practices. It instructs the user on how to use ExternalSecrets to sync sensitive data like Cloudflare API tokens and Root CAs from AWS SSM, avoiding any hardcoded secrets in the configuration files.
  • [COMMAND_EXECUTION]: Includes standard administrative commands for kubectl and curl. While some commands contain patterns associated with attacks (e.g., directory traversal or SQL injection), these are explicitly documented as test payloads for verifying the effectiveness of the Web Application Firewall (WAF) and are not intended for malicious execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 15, 2026, 04:22 PM