direction-technique

Pass

Audited by Gen Agent Trust Hub on Mar 16, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The instructions focus on technical orchestration and do not contain patterns designed to override agent safety filters or bypass system instructions.
  • [DATA_EXFILTRATION]: No hardcoded credentials or unauthorized network exfiltration patterns were found. The 'gestion-secrets' agent provides robust security guidelines for managing credentials via standard cloud services (Vault, AWS Secrets Manager).
  • [REMOTE_CODE_EXECUTION]: The skill contains no remote download scripts (e.g., curl | bash). All Node.js scripts in the tests directory use standard built-in modules (fs, path, crypto) for file validation purposes.
  • [COMMAND_EXECUTION]: The documentation provides technical command examples (e.g., kubectl, docker, tail) intended for developer reference during troubleshooting, but does not execute arbitrary or high-risk commands automatically.
  • [EXTERNAL_DOWNLOADS]: All external URLs referenced in the security and performance agents point to trusted industry-standard resources such as OWASP, NIST, Google Web Vitals, and Official Documentation sites.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 16, 2026, 05:03 AM