gps-cli
Pass
Audited by Gen Agent Trust Hub on Jul 31, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides instructions for the agent to execute shell commands using the
gpsCLI tool to interact with the Android Publisher API. - [PROMPT_INJECTION]: The skill establishes an attack surface for indirect prompt injection by instructing the agent to ingest and process data from external sources, such as app listings and reviews.
- Ingestion points: Tool output from
gps reviews listandgps listings listin SKILL.md. - Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the documentation.
- Capability inventory: The agent has the ability to execute shell commands using the
gpstool. - Sanitization: There is no evidence of sanitization or filtering of the external content before it is processed by the agent.
Audit Metadata