longbridge-ownership
Pass
Audited by Gen Agent Trust Hub on May 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is prompt-based and utilizes the longbridge CLI tool and MCP servers to fetch financial data related to security ownership. All operations are within the scope of the vendor's (longbridge) intended functionality.
- [COMMAND_EXECUTION]: The skill instructs the agent to run CLI commands using user-supplied symbols. Potential command injection is mitigated by the explicit instruction to normalize the symbol to a specific format (
<CODE>.<MARKET>) before execution. - [EXTERNAL_DOWNLOADS]: No automated external downloads are performed. The skill mentions the need for the
longbridge-terminalto be installed but does not provide a script to automatically download or install it from untrusted sources.
Audit Metadata