update-chrome-binaries-test-region

Warn

Audited by Gen Agent Trust Hub on Jun 25, 2026

Risk Level: MEDIUMCOMMAND_EXECUTIONCREDENTIALS_UNSAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes multiple shell commands including aws sts get-caller-identity, bun src/admin/make-layer-public.ts, and a Docker test script ./run.sh.\n- [CREDENTIALS_UNSAFE]: Instructions include eval "$(aws configure export-credentials --format env)", which exports active AWS credentials (Access Key ID, Secret Access Key, and Session Token) into the shell environment. This makes sensitive credentials available to any subsequent process or script executed within the same session.\n- [EXTERNAL_DOWNLOADS]: The skill performs network operations to external sites, including checking for browser metadata on Microsoft's GitHub repository and verifying binary availability on remotion.media (the author's domain).\n- [PROMPT_INJECTION]: There is a surface for indirect prompt injection where the agent is instructed to read external JSON data from a GitHub URL and user-provided version strings to update various project source files and documentation.\n- [COMMAND_EXECUTION]: Targets a specific hardcoded AWS Account ID (678892195805) for identity verification during the setup process.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 25, 2026, 12:18 PM
Security Audit — agent-trust-hub — update-chrome-binaries-test-region