trader-hand-skill
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses
shell_execto runcurlcommands for interacting with the Alpaca Trading API and various financial data providers like Yahoo Finance and Google Finance. These operations are essential to its function as a trading tool and target well-known, legitimate services.\n- [DYNAMIC_EXECUTION]: The instructions direct the agent to generate and execute small Python scripts usingpython3 -cfor parsing JSON API responses and calculating technical indicators like RSI. The Python code logic is provided as static templates within the skill's instructions, representing a low-risk use of dynamic execution for data processing.\n- [INDIRECT_PROMPT_INJECTION]: By design, the skill ingests and analyzes untrusted third-party data from the web, including news headlines, social media sentiment (Reddit/Twitter), and analyst reports. This creates a surface for indirect prompt injection where external content could attempt to influence trading decisions, a risk factor managed by the LLM's own filters and the skill's requirement for multi-factor signal fusion.\n- [CREDENTIALS_UNSAFE]: The skill manages sensitive Alpaca API credentials. It adheres to security standards by utilizing platform-provided environment variable mapping (ALPACA_API_KEY,ALPACA_SECRET_KEY) in the configuration metadata rather than hardcoding secrets directly in the prompt or scripts.
Audit Metadata