amazon-fba-calculator

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill functions as a standalone Amazon FBA calculator. The implementation is consistent with the documentation and contains no hidden or malicious logic.\n- [COMMAND_EXECUTION]: While the skill is executed via the command line and accepts JSON arguments, it only uses this data for internal calculation logic and does not execute system commands.\n- [DATA_EXFILTRATION]: There are no network calls or operations that access sensitive files. Data processing is limited to the product details provided by the user.\n- [REMOTE_CODE_EXECUTION]: The skill does not download, install, or execute any external scripts or packages.\n- [INDIRECT_PROMPT_INJECTION]: The skill ingests product data from command-line arguments in scripts/calculator.py. While there are no explicit boundary markers to distinguish instructions from data, the script lacks dangerous capabilities (such as network access, file-writing, or code execution) that would make an injection attempt exploitable.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 10:19 AM
Security Audit — agent-trust-hub — amazon-fba-calculator