bb-skills-update
Pass
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes the
bb-skills updatecommand to check for and apply updates to installed components. This is a core function for maintaining the local environment. - [EXTERNAL_DOWNLOADS]: The instructions suggest installing the
bb-skillspackage from PyPI if it is missing. This package is the primary CLI for the vendor's platform. - [PROMPT_INJECTION]: The skill reads from a local manifest file, which creates a potential surface for indirect prompt injection if the file content is maliciously crafted.
- Ingestion points: The file
~/.bb-skills/manifest.jsonis read to determine current versioning. - Boundary markers: There are no markers or delimiters used when the agent processes this file content.
- Capability inventory: The skill has the ability to execute the
bb-skillscommand-line utility. - Sanitization: The skill does not perform validation or sanitization on the data retrieved from the manifest file.
Audit Metadata