pp-zimmo

Pass

Audited by Gen Agent Trust Hub on Sep 26, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill downloads the zimmo-pp-cli binary using npx from the @mvanhorn/printing-press-library package and go install from the mvanhorn/printing-press-library GitHub repository.
  • [COMMAND_EXECUTION]: The skill's primary function is to drive the zimmo-pp-cli tool. It includes explicit security warnings and best practices for the agent to avoid shell injection when processing user-controlled text, such as using file-writing tools and variable substitution instead of direct interpolation.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted real estate listing data from Zimmo's external API (via find, show, and enrich commands). This surface is mitigated by the tool's use of structured data formats (JSON/CSV) and the safety instructions provided for command construction.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 26, 2026, 07:23 AM
Security Audit — agent-trust-hub — pp-zimmo