sector-performance-snapshot
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructions involve using
npxto download and execute theoctagon-mcpserver. This is a required component provided by the vendor to facilitate the skill's intended functionality of retrieving market metrics. - [REMOTE_CODE_EXECUTION]: The setup guide (
references/mcp-setup.md) includes the official installation command for the Homebrew package manager on macOS, which executes a script directly from Homebrew's verified GitHub repository. This is a standard procedure for installing development prerequisites. - [INDIRECT_PROMPT_INJECTION]: The skill acts as an interface for the
octagon-agenttool, which retrieves data from external financial sources. This establishes a surface where the agent processes external content that could theoretically contain hidden instructions. - Ingestion points: Results and metrics returned from the
octagon-agenttool based on sector performance queries. - Boundary markers: The provided instructions do not define specific delimiters or instructions for the agent to ignore potentially embedded directives in the tool's output.
- Capability inventory: The skill itself is declarative (Markdown and JSON) and does not contain local scripts, file system write operations, or direct network calls beyond the MCP tool invocations.
- Sanitization: There is no evidence of explicit sanitization or filtering of the financial data received from the MCP server before it is presented to the user.
Audit Metadata