automation
Pass
Audited by Gen Agent Trust Hub on Feb 20, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION] (LOW): The skill stores untrusted strings provided via the /auto cron command, creating a stored prompt injection surface.
- Ingestion points: index.ts via the command argument.
- Boundary markers: Absent.
- Capability inventory: No subprocess, exec/eval, file-write, or network operations found in the provided files.
- Sanitization: Absent.
Audit Metadata