storeganise-automation

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS] (LOW): The skill directs users to connect to an external MCP server at https://rube.app/mcp. While this is required for the skill's functionality, the domain is not on the official trusted source list.
  • [REMOTE_CODE_EXECUTION] (LOW): The use of RUBE_REMOTE_WORKBENCH allows for the execution of tools on a remote platform. This is a core feature of the skill's integration but represents a remote execution surface.
  • [INDIRECT_PROMPT_INJECTION] (LOW): Surface detected as the skill processes external data from Storeganise. 1. Ingestion points: RUBE_MULTI_EXECUTE_TOOL and RUBE_SEARCH_TOOLS outputs. 2. Boundary markers: None specified in instructions. 3. Capability inventory: Remote tool execution and API access. 4. Sanitization: Not mentioned in the skill definition.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:44 PM