image-resize
Pass
Audited by Gen Agent Trust Hub on Feb 19, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- EXTERNAL_DOWNLOADS (LOW): The tool allows the
--inparameter to be a URL, enabling the agent to perform network requests to external sources. - PROMPT_INJECTION (LOW): The skill presents an indirect prompt injection surface when processing untrusted images. Mandatory Evidence Chain: 1. Ingestion points:
--inparameter (URL/File). 2. Boundary markers: None. 3. Capability inventory: Image resizing via the 'sharp' library. 4. Sanitization: None documented.
Audit Metadata