about-oracle

Pass

Audited by Gen Agent Trust Hub on Mar 26, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: Uses standard command-line tools including git, ls, and cat to retrieve versioning information, commit logs, and directory structures from the local environment.
  • [COMMAND_EXECUTION]: Executes the arra-oracle-skills CLI and a project-specific script src/skills/oracle-family-scan/scripts/fleet-scan.ts using the Bun runtime to gather system status and ecosystem data.
  • [EXTERNAL_DOWNLOADS]: Fetches repository listings and specific issue content from the vendor's official Soul-Brews-Studio GitHub organization via the gh command-line utility.
  • [DATA_EXFILTRATION]: Accesses the user's home directory at ~/Code/github.com/Soul-Brews-Studio/arra-oracle-v3 to read Git history and verify project statistics.
  • [PROMPT_INJECTION]: Ingests remote data from a GitHub issue on the vendor's repository to populate its internal data about the project family tree, representing an external data ingestion surface.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 26, 2026, 02:42 AM