iii-dead-letter-queues
Pass
Audited by Gen Agent Trust Hub on Apr 6, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: Mentions the
iii triggerCLI command for operational tasks like redriving queues. These commands are part of the platform's standard administrative toolkit provided by iii-hq. \n- [PROMPT_INJECTION]: Identifies a surface for indirect prompt injection where the agent is instructed to examine job payloads. \n - Ingestion points: Job payloads and error logs from the queue (SKILL.md). \n
- Boundary markers: Absent; no delimiters are suggested to isolate job data. \n
- Capability inventory: The agent can execute CLI commands and trigger functions (SKILL.md). \n
- Sanitization: Absent; the documentation does not describe validating or cleaning job data before inspection.
Audit Metadata