app-service-log-analysis

Pass

Audited by Gen Agent Trust Hub on May 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill performs log collection and analysis using standard system tools (kubectl, aws CLI). It includes specific instructions to avoid modifying the user's primary configuration (~/.kube/config) by generating isolated, temporary kubeconfig files for each cluster.
  • [SAFE]: Data access is handled cautiously. When scanning for application dependencies, the skill explicitly restricts Secret access to metadata (key names) only, ensuring that actual sensitive values are never decoded or exposed to the agent context.
  • [SAFE]: The skill uses local storage for log collection and analysis reports. No external network exfiltration or remote code execution patterns were detected. Remote data retrieval is limited to official AWS CloudWatch logs via the AWS CLI.
Audit Metadata
Risk Level
SAFE
Analyzed
May 11, 2026, 06:20 AM