rspack-webpack-gap-tracker
Fail
Audited by Gen Agent Trust Hub on Sep 24, 2026
Risk Level: HIGHCOMMAND_EXECUTIONDATA_EXFILTRATIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill's primary function involves running a bundled script (diff-tests.mjs) that performs complex filesystem operations using the zx shell wrapper.\n- [DATA_EXFILTRATION]: The provided script allows for reading arbitrary file paths via command-line arguments. It specifically reads file contents and displays them to the user or agent, which could be used to expose sensitive system data if directed at protected directories.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes file contents from external repositories during its audit workflow. This creates a vulnerability where malicious instructions hidden in the audited code could be interpreted by the agent.\n
- Ingestion points: The scripts/diff-tests.mjs script reads file contents from the paths provided for comparison.\n
- Boundary markers: There are no markers or instructions to isolate the ingested data from the agent's command context.\n
- Capability inventory: The skill possesses filesystem read capabilities and can output data to the console.\n
- Sanitization: The skill does not validate or sanitize the content of the files it reads before presenting them to the agent.
Recommendations
- AI detected serious security threats
Audit Metadata