indices-task-management
Pass
Audited by Gen Agent Trust Hub on Mar 16, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the
indicesCLI for lifecycle management of tasks, including creation, listing, and deletion.\n- [EXTERNAL_DOWNLOADS]: It references the vendor's official domainplatform.indices.iofor users to manually complete certain tasks.\n- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it processes untrusted data from URLs and task descriptions provided as arguments.\n - Ingestion points:
--websiteand--taskparameters inSKILL.md\n - Boundary markers: None identified\n
- Capability inventory: Execution of
indicesCLI commands (subprocess calls)\n - Sanitization: No explicit validation or sanitization of input strings is performed
Audit Metadata