social-intelligence

Pass

Audited by Gen Agent Trust Hub on Sep 21, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill requires the installation of the agentcash package globally (npm install -g agentcash) and utilizes npx agentcash@latest for executing commands. This practice downloads and runs code from the npm registry without version pinning, which can introduce supply chain risks if the package is compromised.
  • [COMMAND_EXECUTION]: The skill's primary workflows rely on shell-based execution of the agentcash CLI tool to interact with APIs, check balances, and discover endpoints. This creates a dependency on an external binary that executes within the agent's environment.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to fetch and summarize untrusted data from Reddit posts and comments.
  • Ingestion points: Data is ingested from https://stableenrich.dev/api/reddit/search and https://stableenrich.dev/api/reddit/post-comments in SKILL.md.
  • Boundary markers: The instructions do not define explicit boundary markers or provide instructions for the agent to ignore potentially malicious embedded commands in the fetched content.
  • Capability inventory: The agent has the ability to execute network requests and expend wallet funds via the agentcash CLI tool.
  • Sanitization: There are no documented steps for sanitizing or filtering the retrieved Reddit content before it is processed by the model for sentiment analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 21, 2026, 02:55 AM
Security Audit — agent-trust-hub — social-intelligence