instrument-tracking
Pass
Audited by Gen Agent Trust Hub on Jul 31, 2026
Risk Level: SAFEPROMPT_INJECTIONDATA_EXFILTRATION
Full Analysis
- [DATA_EXFILTRATION]: The skill performs an automated search for the
WANIWANI_API_KEYwithin sensitive environment files such as.envand.env.local. Although the command usesgrep -lto check for existence rather than exfiltrating content, the targeted access to these specific sensitive paths is noted as a data exposure risk.- [PROMPT_INJECTION]: This skill presents an indirect prompt injection surface (Category 8). It ingests untrusted data from project source code (ingestion points includesrc/,server/,lib/, andapp/directories) to perform mapping and instrumentation. There are no boundary markers or instructions to ignore embedded content during analysis. The agent possesses write capabilities and shell execution privileges (grep,bun run typecheck), which could be abused if malicious instructions are present in the analyzed files.
Audit Metadata