oma-search

Pass

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill makes network requests to https://siterank.redirect2.me/api/rank.json using curl to validate domain trust scores. This involves interacting with an external third-party service that is not on the list of trusted providers.
  • [COMMAND_EXECUTION]: The skill requires the execution of several CLI commands, including gh search code, glab api, and a specialized oma search fetch tool. These commands are used to interact with external code repositories and web services.
  • [PROMPT_INJECTION]: The skill has an indirect prompt injection surface because it retrieves and processes content from external web pages, documentation, and source code repositories.
  • Ingestion points: Content is ingested via the 'docs', 'web', and 'code' routes as described in the resources/execution-protocol.md file.
  • Boundary markers: There are no instructions or structural markers defined to prevent the agent from following instructions that might be embedded in the search results.
  • Capability inventory: The agent can perform tool calls and execute shell commands (gh, glab) based on its findings.
  • Sanitization: The skill does not specify any sanitization or filtering logic for the external content before it is processed or presented to the user.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 13, 2026, 12:19 PM
Security Audit — agent-trust-hub — oma-search