meridian-budget-optimization
Pass
Audited by Gen Agent Trust Hub on Sep 2, 2026
Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- Dynamic Script Generation and Execution: The skill generates Python scripts based on user-defined parameters and executes them via the system interpreter. While dynamic execution is a security consideration, it is the primary intended function of the skill. Risk is mitigated by 'CRITICAL INTERACTIVE CHECKPOINTS' that require explicit user approval before scripts are written or executed, even if the user initially requested autonomous operation.
- User-Defined File Access: The skill interacts with the filesystem by loading model files and writing reports and scripts to paths provided by the user. The skill ensures safety by presenting these paths for confirmation at multiple checkpoints, preventing unintended file modifications or access.
- External Data Ingestion: The skill processes Meridian model files and optimization configurations, which represent an indirect prompt injection surface. The skill manages this by using official vendor libraries for deserialization and requiring the user to review and approve all configurations before they are processed.
Audit Metadata