Fail
Audited by Gen Agent Trust Hub on Jul 7, 2026
Risk Level: HIGHEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructions direct the user or agent to download pre-compiled binary executables from a third-party GitHub repository (github.com/mnhkahn/cyeam-cli) during the installation phase.
- [COMMAND_EXECUTION]: The installation process involves piping remote content into shell commands (
tar xz) and executing them locally. - [COMMAND_EXECUTION]: The skill requires the use of
sudoto move the downloaded binary into/usr/local/bin/, which represents a privilege escalation requirement for standard installation.
Recommendations
- AI detected serious security threats
Audit Metadata