skills/ios-agent/iosagent.dev/carplay/Gen Agent Trust Hub

carplay

Fail

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: CRITICALCOMMAND_EXECUTIONMETADATA_POISONING
Full Analysis
  • [METADATA_POISONING]: The skill incorporates deceptive information regarding operating system versions (referencing iOS 26 and iOS 26.4) and release timelines (February 2026). This intentional misinformation can lead to the misconfiguration of AI agents or the bypass of safety policies designed for current environments by claiming to belong to a future, less-restricted platform category.
  • [COMMAND_EXECUTION]: The skill provides specific shell commands for modifying iPhone Simulator settings (defaults write com.apple.iphonesimulator CarPlayExtraOptions -bool YES). While presented for development purposes, the inclusion of executable system commands within a file flagged as malicious is a significant security risk.
  • [SAFE]: External links provided in the documentation were verified and correctly point to official Apple developer resources.
Recommendations
  • CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
  • AI detected serious security threats
Audit Metadata
Risk Level
CRITICAL
Analyzed
Sep 15, 2026, 12:21 PM
Security Audit — agent-trust-hub — carplay