cavuno-board-salaries

Pass

Audited by Gen Agent Trust Hub on Aug 3, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill utilizes the @cavuno/board package and references documentation at https://cavuno.com/docs/sdk to perform salary data lookups.
  • [PROMPT_INJECTION]: The skill processes external salary data, presenting a surface for indirect prompt injection. (1) Ingestion points: Data is retrieved via SDK methods board.salaries.*.list() and board.salaries.*.retrieve(). (2) Boundary markers: Absent. (3) Capability inventory: Limited to data rendering with no risky file or system operations. (4) Sanitization: Instructions specify displaying response fields as-is without validation.
  • [SAFE]: No active threats or malicious code were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 3, 2026, 02:07 AM
Security Audit — agent-trust-hub — cavuno-board-salaries