prediction-markets-analysis

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill's setup process involves downloading the octagon-mcp package from the NPM registry. This is a vendor-provided dependency required for the skill's core functionality.
  • [REMOTE_CODE_EXECUTION]: The documentation provides instructions for installing the Homebrew package manager via a remote script (curl | bash) and running the MCP server using npx. These are standard setup procedures using well-known services or vendor-owned tools.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests data from external Kalshi market URLs to generate research reports, creating an ingestion surface for untrusted content.
  • Ingestion points: External Kalshi market URLs are passed to the octagon-prediction-markets-agent tool as documented in SKILL.md.
  • Boundary markers: The instructions do not define delimiters or provide warnings to the agent to ignore instructions embedded in the external data.
  • Capability inventory: The agent can perform network requests and fetch historical data via the Octagon MCP tools.
  • Sanitization: The skill does not demonstrate any sanitization or validation of the market data before it is processed by the model.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 09:13 PM
Security Audit — agent-trust-hub — prediction-markets-analysis