debug-fetcher
Pass
Audited by Gen Agent Trust Hub on Mar 17, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses
subprocess.runto coordinate tasks across multiple sibling skills, includingfetcher,memory,ingest-youtube, andagent-inbox. These calls are implemented using list-based arguments to prevent shell injection and are core to the skill's coordination functionality. - [EXTERNAL_DOWNLOADS]: The skill facilitates the fetching of content from arbitrary remote URLs as part of its failure-recovery logic. It leverages multiple strategies and external tools to ensure resilient data ingestion.
- [PROMPT_INJECTION]: As a fetcher utility, the skill ingests untrusted data from URLs and manifest files, representing an indirect prompt injection surface. The skill manages the fetching workflow and hands off content for downstream processing, relying on the agent's overall architecture for content sanitization.
- [SAFE]: No malicious patterns, such as hardcoded credentials, obfuscation, or unauthorized persistence mechanisms, were found. The skill maintains a clear separation of concerns and uses a human-in-the-loop approach for sensitive recovery actions.
Audit Metadata