ic-operator-admin

Pass

Audited by Gen Agent Trust Hub on Jul 19, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill configuration is downloaded from the official vendor domain (immersivecommons.com) during the installation process, which is standard for this tool.
  • [PROMPT_INJECTION]: The workflow processes untrusted user-submitted membership notes. The skill mitigates the risk of indirect prompt injection by explicitly instructing the agent to treat these notes as evidence requiring manual cross-referencing and human approval, while prohibiting automated or batch processing.
  • [COMMAND_EXECUTION]: Documentation includes example curl commands for operators to manually verify their authentication tokens. These commands are diagnostic and interact exclusively with the official vendor API endpoint.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 19, 2026, 10:21 PM
Security Audit — agent-trust-hub — ic-operator-admin