Scanned skills

aws/agent-toolkit-for-aws aws-observability

Checked the catalogued skill at aws-observability.

SkillTrust corpus scan 22 September 2026 v0.10.0 via skillsh Verify on GitHub
F AI-triaged 61
F Security

F; retained sample includes a high finding · SD-007 · what this rule accepts as a false positive →

D Permissions

D; retained sample includes a high finding · SD-003 · what this rule accepts as a false positive →

B Transparency

B set by findings not listed in the stored summary

showing 10 of 61
permission_hygienehigh SD-003
references/appsignals-guides/ec2-dotnet.md
permission_hygienehigh SD-003
references/appsignals-guides/ec2-dotnet.md
permission_hygienehigh SD-003
references/appsignals-guides/ec2-dotnet.md
permission_hygienehigh SD-003
references/appsignals-guides/ec2-dotnet.md
permission_hygienehigh SD-003
references/appsignals-guides/ec2-dotnet.md
permission_hygienehigh SD-003
references/appsignals-guides/ec2-dotnet.md
permission_hygienehigh SD-003
references/appsignals-guides/ec2-dotnet.md
permission_hygienehigh SD-003
references/appsignals-guides/ec2-dotnet.md
securityhigh SD-007
references/appsignals-guides/ec2-dotnet.md
securityhigh SD-010
references/appsignals-guides/ec2-dotnet.md
22 suppressed by AI triage
permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-java.md

The absolute path is part of a documentation example, not executed code.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-java.md

Hard‑coded absolute path used in example documentation, not user‑controlled.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-java.md

Reference to a configuration file in example code, not malicious.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-java.md

Absolute path used in a documented Dockerfile example, benign.

transparencymedium SD-007 benign_example
references/appsignals-guides/ec2-java.md

Curl command appears only in documentation; it does not execute automatically.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-java.md

Hard‑coded path in example UserData commands, not exploited.

securityhigh SD-007 benign_example
references/appsignals-guides/ec2-java.md

Outbound network call shown as part of example, not executed.

securityhigh SD-022 benign_example
references/appsignals-guides/ec2-java.md

DNS lookup shown in documentation context, not exfiltration.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-java.md

Reference to agent jar in example Docker run command, not malicious.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-java.md

Environment variable setting in documentation, harmless.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-nodejs.md

The path refers to an intended configuration file in a documentation example, not malicious code.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-nodejs.md

The path points to a legitimate CloudWatch Agent binary used in a normal EC2 setup.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-nodejs.md

This is a reference to the CloudWatch Agent config file within instructional content, not a threat.

securityhigh SD-022 benign_example
references/appsignals-guides/ec2-nodejs.md

The snippet discusses legitimate networking options, not actual DNS tunneling or exfiltration.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-python.md

Documentation shows legitimate absolute path usage in EC2 user data script.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-python.md

Illustrative script starting CloudWatch Agent; absolute path is normal.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/ec2-python.md

Repeated path reference in documentation; not malicious.

securityhigh SD-022 benign_example
references/appsignals-guides/ec2-python.md

Context is about Docker networking, no actual DNS tunneling code; false positive.

securityhigh SD-011 benign_example
references/appsignals-guides/lambda-dotnet.md

The file references a raw GitHub URL only for documentation, not execution.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/lambda-dotnet.md

The absolute path is a standard Lambda system path cited in documentation, not a traversal vector.

permission_hygienehigh SD-003 benign_example
references/appsignals-guides/lambda-dotnet.md

The path is again a normal system directory reference in documentation, not an exploitable traversal.

permission_hygienehigh SD-003 benign_example
references/dynamic-instrumentation/snapshot-parsing.md

The path is used in documentation as a sample argument, not actual code that could be exploited.