stock-performance
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs users to install the
octagon-mcpserver package using Node.js package managers (npx,bunx,pnpm). It also provides the official Homebrew installation script for macOS users (https://raw.githubusercontent.com/Homebrew/install/HEAD/install.sh) as a prerequisite. - [INDIRECT_PROMPT_INJECTION]: The skill possesses an ingestion surface for indirect prompt injection as it retrieves and processes stock data and financial intelligence from external sources, including web searches and SEC filings, through the
octagon-agenttool. - Ingestion points: External market data and web search results are ingested into the agent context via the
octagon-agenttool output (documented inSKILL.md). - Boundary markers: Not explicitly defined in the skill instructions; reliance is placed on the underlying agent platform's handling of tool outputs.
- Capability inventory: The skill facilitates calls to the
octagon-agentMCP tool but does not include local script execution or sensitive file system write operations. - Sanitization: No explicit sanitization or filtering logic is prescribed in the documentation for the external content before it is processed by the agent.
Audit Metadata