tigris-security-access-control
Pass
Audited by Gen Agent Trust Hub on Mar 24, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill installs the official Tigris CLI (
@tigrisdata/cli) from the NPM registry. This is a legitimate installation of a vendor-owned tool necessary for managing Tigris storage resources. - [COMMAND_EXECUTION]: Utilizes the
tigriscommand-line utility to perform storage administration tasks like creating access keys and setting bucket policies. These commands are standard for the tool's intended use and do not perform any hidden or unauthorized actions. - [CREDENTIALS_UNSAFE]: The skill includes dedicated sections on environment variable security and a security audit checklist. It proactively instructs users to avoid hardcoding credentials and instead use environment variables or platform-specific secret managers.
Audit Metadata