skills/tokenrhythm/opensquilla/cron/Gen Agent Trust Hub

cron

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill instructions create a surface for indirect prompt injection by directing the agent to translate natural language user input into structured arguments for the cron tool.
  • Ingestion points: User-provided scheduling requests and task descriptions are processed in SKILL.md.
  • Boundary markers: There are no instructions for the agent to use delimiters or ignore embedded instructions within the natural language task descriptions.
  • Capability inventory: The skill utilizes the cron tool to add, list, and trigger tasks.
  • Sanitization: The instructions do not specify any validation, filtering, or escaping for the user-provided task argument before it is passed to the tool.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 09:26 AM
Security Audit — agent-trust-hub — cron