oma-search
Pass
Audited by Gen Agent Trust Hub on Jun 13, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill makes network requests to https://siterank.redirect2.me/api/rank.json using curl to validate domain trust scores. This involves interacting with an external third-party service that is not on the list of trusted providers.
- [COMMAND_EXECUTION]: The skill requires the execution of several CLI commands, including gh search code, glab api, and a specialized oma search fetch tool. These commands are used to interact with external code repositories and web services.
- [PROMPT_INJECTION]: The skill has an indirect prompt injection surface because it retrieves and processes content from external web pages, documentation, and source code repositories.
- Ingestion points: Content is ingested via the 'docs', 'web', and 'code' routes as described in the resources/execution-protocol.md file.
- Boundary markers: There are no instructions or structural markers defined to prevent the agent from following instructions that might be embedded in the search results.
- Capability inventory: The agent can perform tool calls and execute shell commands (gh, glab) based on its findings.
- Sanitization: The skill does not specify any sanitization or filtering logic for the external content before it is processed or presented to the user.
Audit Metadata