blogwatcher

Warn

Audited by Gen Agent Trust Hub on Jul 9, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the blogwatcher CLI tool from a third-party GitHub repository (github.com/Hyaxia/blogwatcher) using the Go package manager (go install).
  • [COMMAND_EXECUTION]: The skill executes the blogwatcher binary to perform feed management, scanning, and article retrieval.
  • [PROMPT_INJECTION]: The skill processes data from external RSS/Atom feeds (ingestion points in blogwatcher scan and blogwatcher articles). Maliciously crafted feed content could potentially influence the agent's behavior if the output is processed without boundary markers or sanitization.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 9, 2026, 10:44 PM
Security Audit — agent-trust-hub — blogwatcher