upload-and-share
Pass
Audited by Gen Agent Trust Hub on Sep 21, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill creates a vulnerability surface for data exposure because it follows user instructions to upload local files to a public URL.
- Ingestion points: User-supplied file paths and filenames via triggers like "upload this" or "share this file" in
SKILL.md. - Boundary markers: No explicit delimiters or instructions are present to prevent the agent from processing sensitive system paths (e.g., SSH keys or environment files) if requested by a user.
- Capability inventory: The skill utilizes
curlwith the@pathsyntax to read local files and performs network PUT requests to remote endpoints atstableupload.dev. - Sanitization: There is no evidence of path validation, file type filtering, or content sanitization before transmission.
- [COMMAND_EXECUTION]: The skill provides instructions to execute shell commands using
curlto transmit binary file data from absolute local paths to remote storage buckets. - [EXTERNAL_DOWNLOADS]: The skill instructs the agent to download and execute the
agentcashCLI tool directly from the npm registry using thenpx agentcash@latestcommand.
Audit Metadata