sentry-cli

Warn

Audited by ZeroLeaks on Apr 15, 2026

Risk Level: HIGH
Scan Summary

The skill's SKILL.md introduces meaningful security concerns: it references remote script execution without establishing a clear review boundary, which weakens pre-use reviewability and makes it harder to audit what the skill actually does at runtime. More critically, the skill weakens instruction/data boundaries by treating untrusted external content as policy-level input, which does materially worsen prompt-injection risk compared with a no-skill baseline. Behavior analysis was not run, so downstream behavioral impact cannot be fully assessed, but the structural issues alone are sufficient to flag this as at risk. The tested scenarios did surface material concerns around trust boundary erosion, and finite testing means additional risks may exist beyond what was captured here.

Score
58/100
Verdict
AT_RISK
Confidence
medium
Findings
2
Section Analysis (3)
TransparencyWARNING
61/100

The skill has 1 transparency concern that weaken pre-use reviewability, mainly around remote script execution without review boundary.

Prompt InjectionWARNING
57/100

The skill increases prompt injection risk by weakening trust boundaries around untrusted external content treated as policy.

Agent BehaviorSkipped

Behavior analysis was not run.

Findings (2)
CRITICAL

Remote script execution without review boundary

CRITICAL

Untrusted external content treated as policy

Coverage DetailsClick to expand
Discovered Files
1
Omitted Files
0
Analyzed Bytes
17.9 KB
Sections Completed
2
Sections Skipped
1
Behavior Probes
0/0
Audit Metadata
Score
58/100
Verdict
AT_RISK
Confidence
medium
Sections
2/3 completed
Findings
2
Mode
risk
Files Scanned
1
Duration
147.9s
Analyzed
Apr 15, 2026, 09:50 PM
Security Audit — zeroleaks — sentry-cli