hosted-agents
Pass
Audited by Gen Agent Trust Hub on Mar 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides architectural guidance and patterns for building secure hosted agent infrastructure and does not contain any malicious code or instructions.
- [DATA_EXFILTRATION]: The skill describes patterns for Git authorship and session attribution using installation tokens, which are standard practices for accountability in multi-user agent environments and do not represent data leakage.
- [COMMAND_EXECUTION]: Recommends the use of isolated execution sandboxes (e.g., Docker, E2B) and includes security guardrails such as network isolation and resource limits to prevent unauthorized access or resource exhaustion during code execution.
- [REMOTE_CODE_EXECUTION]: Outlines an architectural pattern for spawning specialist sub-agents to parallelize tasks, which is an intended design feature for scaling agent capabilities within a managed system rather than an exploitable vulnerability.
Audit Metadata