commodities-quote

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The installation guide in references/mcp-setup.md suggests installing Homebrew via a script fetched from GitHub (raw.githubusercontent.com) and piped directly to the bash shell. This is a standard installation method for that service.
  • [EXTERNAL_DOWNLOADS]: The skill utilizes npx to dynamically download and execute the octagon-mcp package from the official npm registry during the setup and execution phases.
  • [COMMAND_EXECUTION]: Users are instructed to execute shell commands to set the OCTAGON_API_KEY environment variable and launch the MCP server, which is necessary for the tool's functionality.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes commodity price and market data from external financial sources, which constitutes an ingestion surface for potential indirect instructions.
  • Ingestion points: The octagon-agent tool retrieves real-time quotes, technical indicators, and volume data from the Octagon API, as documented in SKILL.md and references/interpreting-results.md.
  • Boundary markers: There are no explicit markers or specialized instructions provided to the agent to treat the fetched market data as strictly non-executable text.
  • Capability inventory: The skill grants the agent the ability to call the octagon-agent tool to query market information.
  • Sanitization: The instructions do not specify any validation or sanitization steps for the data returned by the MCP server before it is incorporated into the agent's context.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 09:12 PM
Security Audit — agent-trust-hub — commodities-quote