parallel-monitor

Pass

Audited by Gen Agent Trust Hub on Jun 27, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes content fetched from external websites through the parallel-cli monitor events and event-group commands, which introduces a surface for indirect prompt injection.
  • Ingestion points: Data retrieved from external web sources via parallel-cli monitor events and parallel-cli monitor event-group in SKILL.md.
  • Boundary markers: The instructions do not specify any boundary markers, delimiters, or system instructions to ignore potential commands embedded in the fetched web content.
  • Capability inventory: The skill is scoped to Bash(parallel-cli:*) which allows the agent to create, list, view, update, and delete server-side monitoring jobs.
  • Sanitization: No explicit sanitization, filtering, or validation of the retrieved web data is described before the agent summarizes the changes.
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions for maintaining its underlying CLI tool via official update paths.
  • Evidence: Mentions the use of parallel-cli update and pipx upgrade parallel-web-tools for version management.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 27, 2026, 02:53 PM
Security Audit — agent-trust-hub — parallel-monitor