sector-performance-snapshot

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructions involve using npx to download and execute the octagon-mcp server. This is a required component provided by the vendor to facilitate the skill's intended functionality of retrieving market metrics.
  • [REMOTE_CODE_EXECUTION]: The setup guide (references/mcp-setup.md) includes the official installation command for the Homebrew package manager on macOS, which executes a script directly from Homebrew's verified GitHub repository. This is a standard procedure for installing development prerequisites.
  • [INDIRECT_PROMPT_INJECTION]: The skill acts as an interface for the octagon-agent tool, which retrieves data from external financial sources. This establishes a surface where the agent processes external content that could theoretically contain hidden instructions.
  • Ingestion points: Results and metrics returned from the octagon-agent tool based on sector performance queries.
  • Boundary markers: The provided instructions do not define specific delimiters or instructions for the agent to ignore potentially embedded directives in the tool's output.
  • Capability inventory: The skill itself is declarative (Markdown and JSON) and does not contain local scripts, file system write operations, or direct network calls beyond the MCP tool invocations.
  • Sanitization: There is no evidence of explicit sanitization or filtering of the financial data received from the MCP server before it is presented to the user.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 09:12 PM
Security Audit — agent-trust-hub — sector-performance-snapshot