clipboard-file
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The test fixture
fixtures/agentic_eval.jsonreferences a Python script located outside the skill's root directory (../../best-practices-skills/scripts/validate_skill.py). This creates a dependency on a specific external file structure for testing.\n- [COMMAND_EXECUTION]: The bundled shell scriptscripts/copy-file-to-clipboard.shexecutes several system utilities (xclip,pgrep,ps,kill) and launches background processes usingsetsid. These operations are required for managing the clipboard lifecycle.\n- [INDIRECT_PROMPT_INJECTION]: The skill exhibits an attack surface for indirect prompt injection via user-supplied file paths.\n - Ingestion points: The
file_pathargument processed inSKILL.mdandscripts/copy-file-to-clipboard.sh.\n - Boundary markers: None identified.\n
- Capability inventory: Execution of
xclip,pgrep,ps, andkillvia shell commands inscripts/copy-file-to-clipboard.sh.\n - Sanitization: Employs
realpath -efor path validation and passes variables as positional parameters tosh -cto mitigate basic shell injection.
Audit Metadata