paperclip-dev-workspace-run-verify-fix
Pass
Audited by Gen Agent Trust Hub on Aug 15, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests data from external API responses and local documentation to guide its repair and verification logic.\n
- Ingestion points: API health checks and main control-plane records.\n
- Boundary markers: None identified in the instructions.\n
- Capability inventory: Shell execution via
curl,pnpm, andlsof.\n - Sanitization: No explicit validation or escaping of API-derived values before shell interpolation.\n- [COMMAND_EXECUTION]: The skill automates service management tasks using shell commands including
pnpm,curl,git, andlsof.\n- [DATA_EXPOSURE_AND_EXFILTRATION]: The skill accesses/proc/<pid>/cwdto verify process identity, which involves reading sensitive system-level process metadata.
Audit Metadata