operon-cli-ops

Pass

Audited by Gen Agent Trust Hub on May 4, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill facilitates the execution of the operon CLI tool on the local system for operational tasks such as node discovery, configuration inspection, and trace analysis.
  • [PROMPT_INJECTION]: The skill processes data from external sources, which represents a potential surface for indirect prompt injection. 1. Ingestion points: Audit records, execution traces, and workflow files are read via operon audit show, operon trace show, and operon run. 2. Boundary markers: Absent; the instructions do not include markers to distinguish log content from system instructions. 3. Capability inventory: Includes CLI execution and file system interaction for managing workflow and trace files. 4. Sanitization: No sanitization or validation of the input files (traces, workflows) is mentioned. This represents a standard operational risk for this type of tool and is not indicative of malicious intent.
Audit Metadata
Risk Level
SAFE
Analyzed
May 4, 2026, 11:25 AM