iii-dead-letter-queues

Pass

Audited by Gen Agent Trust Hub on Apr 6, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: Mentions the iii trigger CLI command for operational tasks like redriving queues. These commands are part of the platform's standard administrative toolkit provided by iii-hq. \n- [PROMPT_INJECTION]: Identifies a surface for indirect prompt injection where the agent is instructed to examine job payloads. \n
  • Ingestion points: Job payloads and error logs from the queue (SKILL.md). \n
  • Boundary markers: Absent; no delimiters are suggested to isolate job data. \n
  • Capability inventory: The agent can execute CLI commands and trigger functions (SKILL.md). \n
  • Sanitization: Absent; the documentation does not describe validating or cleaning job data before inspection.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 6, 2026, 10:40 PM