operon-cli-ops
Pass
Audited by Gen Agent Trust Hub on May 4, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill facilitates the execution of the
operonCLI tool on the local system for operational tasks such as node discovery, configuration inspection, and trace analysis. - [PROMPT_INJECTION]: The skill processes data from external sources, which represents a potential surface for indirect prompt injection. 1. Ingestion points: Audit records, execution traces, and workflow files are read via
operon audit show,operon trace show, andoperon run. 2. Boundary markers: Absent; the instructions do not include markers to distinguish log content from system instructions. 3. Capability inventory: Includes CLI execution and file system interaction for managing workflow and trace files. 4. Sanitization: No sanitization or validation of the input files (traces, workflows) is mentioned. This represents a standard operational risk for this type of tool and is not indicative of malicious intent.
Audit Metadata