neural-train
Pass
Audited by Gen Agent Trust Hub on May 19, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [REMOTE_CODE_EXECUTION]: The skill uses
npx @claude-flow/cli@latestto perform operations such as training patterns, checking status, and compressing storage. This command downloads and executes code from the npm registry at runtime. This is consistent with the intended use of the Claude Flow ecosystem referenced in the skill's allowed tools. - [INDIRECT_PROMPT_INJECTION]: The skill processes potentially untrusted data through feedback loops and task trajectories, creating an attack surface for indirect prompt injection.
- Ingestion points: Data enters the context via the
mcp__claude-flow__hooks_intelligence_trajectory-startandmcp__claude-flow__ruvllm_sona_adapttools. - Boundary markers: None identified in the provided instructions.
- Capability inventory: The agent has access to the
Bashtool and multiple neural training and system modification tools. - Sanitization: No sanitization or validation steps are defined for the feedback or trajectory data before processing.
Audit Metadata