ubuntu
Pass
Audited by Gen Agent Trust Hub on Mar 21, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: Legitimate administrative commands such as
apt-get,ufw,netplan, andsystemctlare included for server management tasks inSKILL.md. - [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it processes untrusted user data regarding server environments and possesses high-privilege capabilities.
- Ingestion points: The 'Quick Intake' section in
SKILL.mdwhere user-provided environment and release details are accepted. - Boundary markers: None; there are no delimiters separating user input from the skill's instructions.
- Capability inventory: The skill can execute powerful system commands like
apt-get,do-release-upgrade, andsystemctlas seen inSKILL.md. - Sanitization: No evidence of input validation or sanitization before processing intake data.
Audit Metadata