auth-launchpad
Pass
Audited by Gen Agent Trust Hub on Aug 12, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection as it facilitates the retrieval and application of configuration data from external platforms (Google Cloud and Supabase) to automate authentication setup.
- Ingestion points: Environment variables such as
SUPABASE_ACCESS_TOKENandGOOGLE_OAUTH_CLIENT_SECRET(documented inSKILL.md), and metadata retrieved from the Supabase Management API as noted inapi-constraints.md. - Boundary markers: Absent. The instructions do not specify the use of delimiters or explicit warnings to prevent the agent from interpreting instructions that might be embedded in external configuration strings.
- Capability inventory: The skill performs network operations to
api.supabase.comandiap.googleapis.com, executes shell commands viapnpm, and modifies local project files as described inscaffold.md. - Sanitization: Absent. The skill documentation does not mention input validation or sanitization for credentials or configuration values before they are used in administrative API
PATCHrequests.
Audit Metadata