longbridge-etf-flow
Pass
Audited by Gen Agent Trust Hub on May 11, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes the
longbridgeCLI tool for fetching financial data, including market quotes, K-line history, and capital flow statistics. These commands are consistent with the skill's stated purpose and use standard formatting for JSON output. - [EXTERNAL_DOWNLOADS]: The skill refers to
longbridge-terminal, which is an external utility associated with the skill's author ('longbridge'). There are no instructions for automated or unauthorized downloads. - [DATA_EXPOSURE_AND_EXFILTRATION]: While the CLI requires authentication via
longbridge auth login, no credentials or sensitive environment variables are hardcoded or accessed improperly within the skill's logic. - [INDIRECT_PROMPT_INJECTION]: The skill processes external financial data from the Longbridge platform (Capability 8c). While this represents a data ingestion surface, the instructions focus on structured data analysis and ranking, minimizing the risk of instructions embedded in the data influencing agent behavior.
Audit Metadata