perl-cpan-ecosystem
Fail
Audited by Gen Agent Trust Hub on Mar 3, 2026
Risk Level: HIGHCOMMAND_EXECUTIONREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The guide provides instructions to use
sudofor installing system packages and build dependencies viaaptand other package managers. - [REMOTE_CODE_EXECUTION]: The documentation includes the standard method for installing
cpanmby downloading a script fromhttps://cpanmin.usand piping it directly to theperlinterpreter. - [COMMAND_EXECUTION]: The skill includes steps to modify shell configuration files such as
~/.bashrcor~/.zshrcto persistently initialize thelocal::libenvironment variables.
Recommendations
- HIGH: Downloads and executes remote code from: https://cpanmin.us - DO NOT USE without thorough review
Audit Metadata