gplay-compliance

Pass

Audited by Gen Agent Trust Hub on Sep 1, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides instructions for running the gplay CLI tool to interact with Google Play APIs. It correctly specifies the use of flags like --dry-run for rehearsals and --confirm for actual updates, minimizing the risk of accidental deployment.
  • [INDIRECT_PROMPT_INJECTION]: The skill involves processing a versioned CSV file.
  • Ingestion points: Data is ingested from ./compliance/data-safety.csv.
  • Boundary markers: None are explicitly mentioned in the instructions.
  • Capability inventory: The skill uses shell commands to interact with the gplay utility.
  • Sanitization: Structural validation is handled by the tool's validate command before any data is sent to the network.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 1, 2026, 02:59 PM
Security Audit — agent-trust-hub — gplay-compliance