wacli

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill enables reading external message data from WhatsApp, which represents an attack surface for indirect prompt injection. The skill does not provide specific sanitization or boundary markers for this data processing, though it includes manual confirmation steps for outgoing messages.
  • Ingestion points: wacli messages search and wacli sync commands in SKILL.md.
  • Boundary markers: Absent.
  • Capability inventory: Command execution via the wacli CLI and file system access via wacli send file.
  • Sanitization: Absent.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 07:46 PM
Security Audit — agent-trust-hub — wacli