agp-9-upgrade
Warn
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: MEDIUMPROMPT_INJECTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The skill metadata contains deceptive authorship information, claiming the author is 'Google LLC'. This is an instance of metadata poisoning intended to influence the agent's or user's trust model by falsely assuming the identity of a trusted vendor.
- [EXTERNAL_DOWNLOADS]: The skill references the official 'android/gradle-recipes' GitHub repository as a source for migration templates. This is a well-known, trusted source for Android developers and does not contribute to verdict escalation.
- [COMMAND_EXECUTION]: Instructions direct the agent to execute standard Gradle tasks (
./gradlew build --dry-run) and to inspect the Gradle dependency cache directory (~/.gradle/caches/). These operations are consistent with the skill's stated purpose of build system migration.
Audit Metadata