aeon-token-pick
Pass
Audited by Gen Agent Trust Hub on Sep 24, 2026
Risk Level: SAFENO_CODEINDIRECT_PROMPT_INJECTION
Full Analysis
- [NO_CODE]: The skill consists of natural language instructions and metadata. No scripts, binaries, or executable code files are present in the provided skill package.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process data from other agent tools (token movers and market monitors), creating a surface where untrusted data could potentially influence the agent's behavior.
- Ingestion points: Ingests data from
aeon-token-moversandaeon-monitor-polymarketas indicated in the catalog setup. - Boundary markers: No explicit delimiters or instructions to ignore embedded commands in input data are provided in the skill instructions.
- Capability inventory: No execution capabilities such as subprocess calls, network operations, or file system modifications were found in the skill's own instructions.
- Sanitization: No input validation or sanitization mechanisms are described for the external data being processed.
Audit Metadata