electron-release
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to process external configuration files and tool outputs which represent a potential attack surface for indirect prompt injection.
- Ingestion points: Reads
package.json,CHANGELOG.md,latest.yml,electron-builder.yml, and command outputs frompnpm auditandgit tag. - Boundary markers: None identified for processing these data sources.
- Capability inventory: The skill uses the
Bashtool and provides patterns forgit push,pnpm install, and custom signing scripts. - Sanitization: No explicit sanitization or validation of version strings or changelog content is defined before use in shell commands or Git operations.
- [DYNAMIC_EXECUTION]: The skill provides a template for a Windows signing script (
scripts/sign-windows.js) that useschild_process.execSyncto dynamically execute commands. - The script interpolates environment variables (
DIGICERT_KEYPAIR_ALIAS,DIGICERT_CERTIFICATE_FINGERPRINT) directly into a shell command, which could be exploited if these variables are compromised or improperly handled. - [COMMAND_EXECUTION]: The skill frequently utilizes shell command execution as part of its primary function.
- Instructions include running
pnpmcommands,gpgsigning, and custom signing tool CLIs viaexecSync. - The GitHub Actions workflow pattern utilizes multiple
runsteps to execute build and release logic.
Audit Metadata