about-oracle
Pass
Audited by Gen Agent Trust Hub on Mar 26, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: Uses standard command-line tools including
git,ls, andcatto retrieve versioning information, commit logs, and directory structures from the local environment. - [COMMAND_EXECUTION]: Executes the
arra-oracle-skillsCLI and a project-specific scriptsrc/skills/oracle-family-scan/scripts/fleet-scan.tsusing the Bun runtime to gather system status and ecosystem data. - [EXTERNAL_DOWNLOADS]: Fetches repository listings and specific issue content from the vendor's official
Soul-Brews-StudioGitHub organization via theghcommand-line utility. - [DATA_EXFILTRATION]: Accesses the user's home directory at
~/Code/github.com/Soul-Brews-Studio/arra-oracle-v3to read Git history and verify project statistics. - [PROMPT_INJECTION]: Ingests remote data from a GitHub issue on the vendor's repository to populate its internal data about the project family tree, representing an external data ingestion surface.
Audit Metadata