iot-fleet
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill uses
npxto fetch and execute the@claude-flow/plugin-iot-cognitumpackage from the NPM registry at runtime.\n- [COMMAND_EXECUTION]: Core functionality is implemented through shell commands executed via thenpxutility.\n- [INDIRECT_PROMPT_INJECTION]: The skill exhibits a vulnerability surface for command injection.\n - Ingestion points: User-provided
NAME,FLEET_ID, andDEVICE_IDarguments within theSKILL.mdcommands.\n - Boundary markers: No delimiters or protective instructions are used to isolate user input from the shell command structure.\n
- Capability inventory: The skill has the ability to execute arbitrary shell commands via the
Bashtool andnpx.\n - Sanitization: There is no evidence of input validation, escaping, or filtering for shell metacharacters in the user-supplied arguments before they are executed.
Audit Metadata