lint-and-validate
Pass
Audited by Gen Agent Trust Hub on Apr 11, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The
scripts/lint_runner.pyscript usessubprocess.runto execute commands derived from project configuration. It runsnpm run lintif a lint script is defined inpackage.json, which allows the execution of arbitrary commands defined within the codebase being audited. - [PROMPT_INJECTION]: The skill is vulnerable to indirect prompt injection through the ingestion of project-level data.
- Ingestion points: Project configuration files including
package.jsonandpyproject.tomlare parsed inscripts/lint_runner.py. - Boundary markers: There are no explicit boundary markers or instructions to the agent to disregard or sanitize command definitions found in these configuration files.
- Capability inventory: The skill possesses shell execution capabilities through
subprocess.runcalls inscripts/lint_runner.py. - Sanitization: No sanitization or validation is performed on the command strings or script names extracted from configuration files before they are passed to the shell environment.
Audit Metadata