signoz-generating-queries

Pass

Audited by Gen Agent Trust Hub on Sep 26, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to run the signoz-mcp-setup command to initialize or repair the connection to the MCP server. This is a vendor-owned resource used for legitimate configuration purposes.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from signoz_search_logs and signoz_search_traces in SKILL.md. While no explicit boundary markers or sanitization logic are defined for the tool output, the skill possesses limited capabilities including execution of builder queries and vendor setup commands and focuses on neutral data presentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 26, 2026, 06:12 AM
Security Audit — agent-trust-hub — signoz-generating-queries