crypto-report
Fail
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: CRITICALEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The script
scripts/theblockbeats-news.shconnects toapi.theblockbeats.news, a domain flagged by automated scanners for phishing. - [COMMAND_EXECUTION]: The skill executes local bash scripts (
scripts/binance-ai-report.shandscripts/theblockbeats-news.sh) to fetch and process cryptocurrency data. - [INDIRECT_PROMPT_INJECTION]: The skill creates a surface for indirect prompt injection by processing and displaying untrusted external news content and market reports. Ingestion points: API responses from
binance.comandtheblockbeats.newsprocessed in the shell scripts. Boundary markers: None; content is extracted and displayed without delimiters or warnings to the agent. Capability inventory: Shell script execution, network access viacurl, and JSON parsing viajq. Sanitization: The skill extracts specific fields usingjq, but it does not perform any text-level filtering to prevent malicious instructions within the fetched news from influencing the agent's behavior.
Recommendations
- Contains 1 malicious URL(s) - DO NOT USE
Audit Metadata