trader-portfolio-cg
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes output from the
neural-traderCLI and results fromAgentDBmemory searches (Step 2). If these external sources were to provide malicious content, it could potentially influence the agent's behavior during subsequentBashcommand execution or data storage steps. - Ingestion points:
npx neural-traderoutput andmcp__plugin_ruflo-core_ruflo__memory_searchresults. - Boundary markers: None identified in the skill instructions to delimit external data from instructions.
- Capability inventory:
Bashexecution for portfolio optimization fallbacks (Step 4) andmcp__plugin_ruflo-core_ruflo__memory_storefor persistent storage of results. - Sanitization: No explicit validation or sanitization of the ingested data is described before it is processed or stored.
- [EXTERNAL_DOWNLOADS]: The skill performs runtime installation of the
neural-traderpackage usingnpm(Step 1). While the use of--ignore-scriptsmitigates the risk of malicious post-installation scripts, fetching packages at runtime introduces a dependency on the integrity of the external package registry. - [COMMAND_EXECUTION]: The skill relies on the
Bashtool to execute multiple shell commands, including package management commands (npm install) and external CLI utilities (npx neural-trader).
Audit Metadata