stock-price-change
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill relies on the installation and execution of the
octagon-mcppackage from the npm registry. - Evidence: Installation instructions in
README.mdandreferences/mcp-setup.mdspecify usingnpx -y octagon-mcpornpx -y octagon-mcp@latestto run the required server. - [REMOTE_CODE_EXECUTION]: Configuration steps involve executing an external package via the
npxcommand, which downloads and runs code at runtime. - Evidence: The configuration for Cursor and Claude Desktop specifies
npxas the command to launch theoctagon-mcpserver. - [INDIRECT_PROMPT_INJECTION]: The skill processes financial data retrieved from external market sources, which represents a potential attack surface for instructions embedded in data.
- Ingestion points: Data returned from the
octagon-agenttool, as described inSKILL.md. - Boundary markers: None present in the
octagon-agenttool prompt to distinguish between data and instructions. - Capability inventory: The skill itself performs data retrieval; the agent's environment handles the tool execution as defined by the MCP server configuration.
- Sanitization: No explicit content filtering or validation of the retrieved stock data is documented.
Audit Metadata