stock-price-change

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill relies on the installation and execution of the octagon-mcp package from the npm registry.
  • Evidence: Installation instructions in README.md and references/mcp-setup.md specify using npx -y octagon-mcp or npx -y octagon-mcp@latest to run the required server.
  • [REMOTE_CODE_EXECUTION]: Configuration steps involve executing an external package via the npx command, which downloads and runs code at runtime.
  • Evidence: The configuration for Cursor and Claude Desktop specifies npx as the command to launch the octagon-mcp server.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes financial data retrieved from external market sources, which represents a potential attack surface for instructions embedded in data.
  • Ingestion points: Data returned from the octagon-agent tool, as described in SKILL.md.
  • Boundary markers: None present in the octagon-agent tool prompt to distinguish between data and instructions.
  • Capability inventory: The skill itself performs data retrieval; the agent's environment handles the tool execution as defined by the MCP server configuration.
  • Sanitization: No explicit content filtering or validation of the retrieved stock data is documented.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 09:12 PM
Security Audit — agent-trust-hub — stock-price-change