post2all
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes the
post2allCLI tool andnpx @post2all/clito perform social media management tasks such as creating, scheduling, and deleting posts. - [EXTERNAL_DOWNLOADS]: Fetches the
@post2all/clipackage from the npm registry using thenpxcommand to ensure the tool is available for use. - [INDIRECT_PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it ingests and processes data from external social media APIs.
- Ingestion points: Data retrieved from commands such as
post2all accounts,post2all constraints, andpost2all post get(found inSKILL.md). - Boundary markers: Absent. The skill does not define specific delimiters or instructions to ignore potential commands embedded in account metadata or post content.
- Capability inventory: The skill can perform network operations via social media APIs and create or modify content across multiple platforms (LinkedIn, Instagram, TikTok, etc.).
- Sanitization: Absent. There is no evidence of filtering or validation of the text data returned by external platforms before it is processed by the agent.
Audit Metadata