commodities-quote
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [REMOTE_CODE_EXECUTION]: The installation guide in
references/mcp-setup.mdsuggests installing Homebrew via a script fetched from GitHub (raw.githubusercontent.com) and piped directly to the bash shell. This is a standard installation method for that service. - [EXTERNAL_DOWNLOADS]: The skill utilizes
npxto dynamically download and execute theoctagon-mcppackage from the official npm registry during the setup and execution phases. - [COMMAND_EXECUTION]: Users are instructed to execute shell commands to set the
OCTAGON_API_KEYenvironment variable and launch the MCP server, which is necessary for the tool's functionality. - [INDIRECT_PROMPT_INJECTION]: The skill processes commodity price and market data from external financial sources, which constitutes an ingestion surface for potential indirect instructions.
- Ingestion points: The
octagon-agenttool retrieves real-time quotes, technical indicators, and volume data from the Octagon API, as documented inSKILL.mdandreferences/interpreting-results.md. - Boundary markers: There are no explicit markers or specialized instructions provided to the agent to treat the fetched market data as strictly non-executable text.
- Capability inventory: The skill grants the agent the ability to call the
octagon-agenttool to query market information. - Sanitization: The instructions do not specify any validation or sanitization steps for the data returned by the MCP server before it is incorporated into the agent's context.
Audit Metadata