lumina-image

Fail

Audited by Gen Agent Trust Hub on Mar 11, 2026

Risk Level: HIGHCREDENTIALS_UNSAFECOMMAND_EXECUTION
Full Analysis
  • [CREDENTIALS_UNSAFE]: The PowerShell script in scripts/build-proxy.ps1 retrieves a secret from Azure Key Vault using az keyvault secret show and writes it to a local .pfx file. This exposes sensitive cryptographic credentials on the filesystem where they may be accessible to other processes.
  • [COMMAND_EXECUTION]: The skill executes multiple powerful CLI tools including dotnet, docker, and az to perform software compilation and container management tasks.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Mar 11, 2026, 09:32 AM