cli-anything-pm2

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFECOMMAND_EXECUTIONPERSISTENCEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill functions as a wrapper for the PM2 CLI, executing process management commands through subprocess calls.
  • [PERSISTENCE]: The skill provides commands such as save and startup which are intended to maintain the execution of processes across system reboots and generate service scripts.
  • [INDIRECT_PROMPT_INJECTION]: The skill has a vulnerability surface where it processes potentially untrusted data from external sources.
  • Ingestion points: The logs view command reads and outputs the contents of process logs.
  • Boundary markers: No specific delimiters or safety warnings for log content are documented in the skill instructions.
  • Capability inventory: The skill can perform process lifecycle operations (start, stop, restart) and system-level configuration changes via the PM2 CLI.
  • Sanitization: No sanitization or filtering of the retrieved log data is mentioned.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 05:21 PM
Security Audit — agent-trust-hub — cli-anything-pm2