superplane-monitor

Pass

Audited by Gen Agent Trust Hub on May 6, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the superplane CLI tool to perform monitoring tasks such as listing events, tracing executions, and managing queues. It also includes commands to list integrations and secrets, which are part of the intended administrative functionality for the vendor's platform.\n- [EXTERNAL_DOWNLOADS]: References official SuperPlane installation guides and documentation hosted on superplane.com. These are recognized as trusted vendor resources.\n- [PROMPT_INJECTION]: The skill displays an indirect prompt injection surface due to the ingestion of external workflow data coupled with administrative capabilities.\n
  • Ingestion points: Workflow execution logs and data payloads are brought into the agent's context through CLI commands like superplane executions list and superplane events list as described in SKILL.md.\n
  • Boundary markers: No instructions are provided to the agent to treat data from the CLI as potentially containing malicious instructions or to apply delimiters.\n
  • Capability inventory: The skill includes tools that can alter the system state, such as superplane queue delete, superplane executions cancel, and superplane canvases update.\n
  • Sanitization: There is no description of data validation or sanitization for the content returned by the CLI before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
May 6, 2026, 04:44 PM