skills/ruvnet/ruflo/neural-train/Gen Agent Trust Hub

neural-train

Pass

Audited by Gen Agent Trust Hub on May 19, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The skill uses npx @claude-flow/cli@latest to perform operations such as training patterns, checking status, and compressing storage. This command downloads and executes code from the npm registry at runtime. This is consistent with the intended use of the Claude Flow ecosystem referenced in the skill's allowed tools.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes potentially untrusted data through feedback loops and task trajectories, creating an attack surface for indirect prompt injection.
  • Ingestion points: Data enters the context via the mcp__claude-flow__hooks_intelligence_trajectory-start and mcp__claude-flow__ruvllm_sona_adapt tools.
  • Boundary markers: None identified in the provided instructions.
  • Capability inventory: The agent has access to the Bash tool and multiple neural training and system modification tools.
  • Sanitization: No sanitization or validation steps are defined for the feedback or trajectory data before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
May 19, 2026, 10:46 PM
Security Audit — agent-trust-hub — neural-train