cpanel-dns
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes a command-line interface
cpanelto perform DNS management tasks including listing, adding, and removing records. These operations are executed locally to interact with the cPanel UAPI as part of the skill's primary function. - [INDIRECT_PROMPT_INJECTION]: The skill accepts user-provided parameters such as domain names and record data which are interpolated into shell commands. This constitutes an ingestion point for untrusted data that could potentially lead to command injection if the underlying platform does not perform strict input sanitization. However, this risk is inherent to CLI-wrapper skills and no active exploitation was observed.
Audit Metadata