Scanned skills

aws/agent-toolkit-for-aws aws-ai-ml

Checked the catalogued skill at aws-ai-ml.

SkillTrust corpus scan 22 September 2026 v0.10.0 via skillsh Verify on GitHub
F AI-triaged 21
F Security

F; retained sample includes a high finding · SD-007 · what this rule accepts as a false positive →

F Permissions

F; retained sample includes a high finding · SD-003 · what this rule accepts as a false positive →

A Transparency

A set by no findings on this axis

showing 10 of 21
permission_hygienehigh SD-003
references/dataset-transformation/overview.md
permission_hygienehigh SD-003
references/dataset-transformation/overview.md
permission_hygienehigh SD-003
references/dataset-transformation/references/dataset_transformation_code.md
permission_hygienehigh SD-003
references/dataset-transformation/references/dataset_transformation_code.md
permission_hygienehigh SD-003
references/dataset-transformation/references/dataset_transformation_code.md
permission_hygienehigh SD-003
references/dataset-transformation/references/dataset_transformation_code.md
permission_hygienehigh SD-003
references/dataset-transformation/scripts/transformation_tools.py
permission_hygienehigh SD-003
references/dataset-transformation/scripts/transformation_tools.py
securityhigh SD-007
references/endpoint-diagnostics/scripts/collect_diagnostics.py
securityhigh SD-007
references/endpoint-diagnostics/scripts/collect_diagnostics.py
4 suppressed by AI triage
permission_hygienehigh SD-003 benign_example
references/finetuning/references/rlvr_reward_function.md

The absolute path reference is part of a documentation example and does not pose a real threat.

securityhigh SD-007 benign_example
references/finetuning/templates/nova_rlvr_reward_function_source_template.py

The URL is only referenced in a comment and does not represent an actual outbound network call or permission grant.

permission_hygienehigh SD-003 benign_example
references/manage-mlflow/overview.md

The snippet is part of documentation demonstrating a harmless relative path check, not an actual malicious path traversal.

securityhigh SD-007 benign_example
references/model-evaluation/scripts/nova_reward_function_source_template.py

The URL is only referenced in a comment and does not represent an actual outbound network call or permission grant.