wrangler
Pass
Audited by Gen Agent Trust Hub on Sep 23, 2026
Risk Level: SAFE
Full Analysis
- [Command Execution]: The skill instructs the agent to execute
wranglercommands and project-defined scripts. This is the intended purpose of the skill, facilitating local development, resource management, and deployments. - [Secret Management Best Practices]: The instructions include explicit guidance to keep sensitive information out of logs, source code, and command arguments. It directs the use of interactive inputs or protected mechanisms for handling secrets, which is a key security consideration for CLI-based workflows.
- [Trusted Documentation Access]: The skill references and fetches information from official Cloudflare documentation domains. These are trusted sources used to ensure that commands and configurations are up-to-date with the current platform requirements.
- [Configuration Data Ingestion]: The skill reads project configuration files such as
wrangler.jsoncandpackage.json. While processing external project data represents a standard attack surface for indirect prompt injection, the skill operates within the expected context of a development tool and encourages validation steps like dry runs and type generation.
Audit Metadata