imagemagick
Pass
Audited by Gen Agent Trust Hub on Aug 25, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses
os.shell.runto execute themagickcommand. It also includes instructions for installing ImageMagick using standard package managers likebrewandapt-get.\n- [PROMPT_INJECTION]: The skill presents an attack surface for indirect prompt injection because it operates on external image files.\n - Ingestion points: Image files passed to the
magickcommand (SKILL.md).\n - Boundary markers: None specified for the input images.\n
- Capability inventory: Access to
os.shell.run(SKILL.md).\n - Sanitization: The skill utilizes an arguments list for shell commands, reducing shell injection risks.
Audit Metadata