cpanel-debug

Pass

Audited by Gen Agent Trust Hub on Aug 10, 2026

Risk Level: SAFE
Full Analysis
  • [DATA_EXPOSURE]: The skill instructs the agent to read sensitive configuration files such as wp-config.php and app.php to diagnose database connection errors. This involves handling database credentials, though the instructions include a safety warning to avoid unnecessary exposure of these secrets.
  • [PERSISTENCE_MECHANISMS]: The skill includes commands to manage cron jobs (cpanel cron:add, cpanel cron:delete), which allows for the creation of background tasks that persist on the server. This is presented as a legitimate tool for fixing background task failures.
  • [INDIRECT_PROMPT_INJECTION]: The skill reads untrusted data from server error logs (cpanel log:errors). Attackers could potentially inject malicious instructions into these logs (e.g., via crafted HTTP requests that fail and log the payload) to influence agent behavior. No specific sanitization or boundary markers are defined for this ingestion point.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 10, 2026, 01:35 AM
Security Audit — agent-trust-hub — cpanel-debug