rspack-webpack-gap-tracker

Fail

Audited by Gen Agent Trust Hub on Sep 24, 2026

Risk Level: HIGHCOMMAND_EXECUTIONDATA_EXFILTRATIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill's primary function involves running a bundled script (diff-tests.mjs) that performs complex filesystem operations using the zx shell wrapper.\n- [DATA_EXFILTRATION]: The provided script allows for reading arbitrary file paths via command-line arguments. It specifically reads file contents and displays them to the user or agent, which could be used to expose sensitive system data if directed at protected directories.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes file contents from external repositories during its audit workflow. This creates a vulnerability where malicious instructions hidden in the audited code could be interpreted by the agent.\n
  • Ingestion points: The scripts/diff-tests.mjs script reads file contents from the paths provided for comparison.\n
  • Boundary markers: There are no markers or instructions to isolate the ingested data from the agent's command context.\n
  • Capability inventory: The skill possesses filesystem read capabilities and can output data to the console.\n
  • Sanitization: The skill does not validate or sanitize the content of the files it reads before presenting them to the agent.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Sep 24, 2026, 04:52 PM
Security Audit — agent-trust-hub — rspack-webpack-gap-tracker