building
Pass
Audited by Gen Agent Trust Hub on Oct 3, 2026
Risk Level: SAFEPRIVILEGE_ESCALATIONINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- Elevated Privilege Execution: The troubleshooting section includes instructions to use sudo apt install for installing system-level dependencies. Executing commands with administrative privileges is a common requirement for build environments but warrants careful review.
- Input Interpolation Surface: The skill uses placeholders such as , , and python3.X-dev within shell commands. (1) Ingestion points: User input for model names, backends, and Python versions. (2) Boundary markers: None present to delimit or warn about embedded instructions. (3) Capability inventory: Shell command execution via make and sudo apt in SKILL.md. (4) Sanitization: No sanitization or validation of the interpolated strings is shown. This surface could potentially be used for command injection if unvalidated input is processed.
- Local Script Invocation: Several shell scripts from the repository, such as install_executorch.sh and build_apple_frameworks.sh, are executed as part of the build process. This is expected functionality for a source-based build system.
Audit Metadata