Cloud Penetration Testing
Fail
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: CRITICALREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [Remote Code Execution] (CRITICAL): Piped remote execution detected using 'curl | bash' which executes unverified code from a remote server.
- [External Downloads] (HIGH): The skill downloads and executes scripts from sdk.cloud.google.com, which is not included in the defined list of Trusted External Sources.
- [Command Execution] (HIGH): The skill uses the shell to execute commands directly, which is an unsafe capability for an AI agent to perform without oversight.
Recommendations
- HIGH: Downloads and executes remote code from: https://sdk.cloud.google.com - DO NOT USE without thorough review
- AI detected serious security threats
Audit Metadata