runbook-generator
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [REMOTE_CODE_EXECUTION]: Automated security scanners flagged a command in
runbook_scaffolder.pyas remote code execution. Manual review confirms this is a false positive; the commandcurl ... -o /dev/nullis a standard health check used to verify service availability by checking HTTP status codes, and it does not execute any downloaded content. Similarly, templates for smoke tests usingcurl | jqare standard practices for verifying API responses.\n- [COMMAND_EXECUTION]: Thestaleness_checker.pyandrunbook_validator.pyscripts utilizesubprocess.runto interact with thegitcommand-line interface. These implementations use list-based arguments, which is a recommended security practice to prevent shell injection. These tools are intended for local development environments to check runbook freshness and quality.\n- [INDIRECT_PROMPT_INJECTION]: The skill ingests service definitions via JSON to populate runbook templates. While this accepts external input, the risk is limited to the content of the generated markdown files. The inclusion ofrunbook_validator.pyallows users and agents to audit these generated files for placeholders or hardcoded secrets before they are adopted.
Audit Metadata