lazyweb-paywall-cta
Pass
Audited by Gen Agent Trust Hub on Jun 22, 2026
Risk Level: SAFEREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [REMOTE_CODE_EXECUTION]: The skill provides a setup command
curl -fsSL https://www.lazyweb.com/install.sh | bashto be used if the necessary Lazyweb MCP tool is missing. This script is hosted on the official domain of the service the skill is designed to support. - [COMMAND_EXECUTION]: The agent is instructed to use Bash to read version information from
~/.lazyweb/VERSIONand to manage structured data files within a local.lazywebdirectory. - [PROMPT_INJECTION]: The skill's primary function involves reading and analyzing user-provided paywall screens and external web content. This establishes an indirect prompt injection surface where instructions potentially embedded in the processed data could attempt to influence the agent's output, although the skill focuses on generating a structured JSON report.
- [DATA_EXFILTRATION]: The skill includes analytics metadata (version and skill name) in its outgoing tool calls to the official service provider, which is standard for tracking the usage of specific integration versions.
Audit Metadata