virtuous-api

Warn

Audited by Gen Agent Trust Hub on Feb 16, 2026

Risk Level: MEDIUMPROMPT_INJECTION
Full Analysis
  • Indirect Prompt Injection (MEDIUM): The skill instructs the agent to parse 'references/Virtuous.postman_collection.json' using grep to find API details. This creates a surface for malicious instructions to be processed by the agent. * Ingestion points: 'references/Virtuous.postman_collection.json'. * Boundary markers: None provided. * Capability inventory: Network interaction with 'api.virtuoussoftware.com' and file system reading. * Sanitization: None.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 12:00 PM