linux-inmemory-stores
Pass
Audited by Gen Agent Trust Hub on Sep 3, 2026
Risk Level: SAFECOMMAND_EXECUTIONPRIVILEGE_ESCALATIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes standard administrative commands such as
apt,dnf,systemctl, andredis-clito manage system services. The scriptscripts/sk-redis-status.shusesredis-clito gather health and security metrics. - [PRIVILEGE_ESCALATION]: The skill requires elevated permissions to perform package installations and service restarts via
sudo. These actions are within the expected scope of a Linux service management skill. - [INDIRECT_PROMPT_INJECTION]: The skill processes data from command outputs, which presents a potential surface for indirect prompt injection.
- Ingestion points:
scripts/sk-redis-status.shreads and parses output fromredis-cli INFOandCONFIG GETcommands.SKILL.mdguides the agent to inspectjournalctllogs. - Boundary markers: The script uses
awkandtrto parse specific key-value pairs from command outputs, providing a degree of structural isolation. - Capability inventory: The skill possesses the ability to install packages, modify service configurations, and restart system units.
- Sanitization: Data is filtered through
awkto extract specific fields, reducing the risk of the agent interpreting raw command output as new instructions.
Audit Metadata