night-market-operations

Pass

Audited by Gen Agent Trust Hub on Jul 31, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides instructions for executing local scripts and make targets like scripts/run-plugin-tests.sh and scripts/update_versions.py. These are used for routine repository maintenance tasks.\n- [EXTERNAL_DOWNLOADS]: The documentation references official GitHub Actions (actions/attest-build-provenance, peaceiris/actions-mdbook) for release automation. These are interactions with well-known services.\n- [PROMPT_INJECTION]: The agent processes repository files (manifests, config files, logs), creating a surface for indirect prompt injection.\n
  • Ingestion points: Repository manifests and configuration files.\n
  • Boundary markers: None specified.\n
  • Capability inventory: File system modification and command execution.\n
  • Sanitization: None specified.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 31, 2026, 01:39 AM
Security Audit — agent-trust-hub — night-market-operations