lazyweb-paywall-cta

Pass

Audited by Gen Agent Trust Hub on Jun 22, 2026

Risk Level: SAFEREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The skill provides a setup command curl -fsSL https://www.lazyweb.com/install.sh | bash to be used if the necessary Lazyweb MCP tool is missing. This script is hosted on the official domain of the service the skill is designed to support.
  • [COMMAND_EXECUTION]: The agent is instructed to use Bash to read version information from ~/.lazyweb/VERSION and to manage structured data files within a local .lazyweb directory.
  • [PROMPT_INJECTION]: The skill's primary function involves reading and analyzing user-provided paywall screens and external web content. This establishes an indirect prompt injection surface where instructions potentially embedded in the processed data could attempt to influence the agent's output, although the skill focuses on generating a structured JSON report.
  • [DATA_EXFILTRATION]: The skill includes analytics metadata (version and skill name) in its outgoing tool calls to the official service provider, which is standard for tracking the usage of specific integration versions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 22, 2026, 07:56 PM
Security Audit — agent-trust-hub — lazyweb-paywall-cta