parking-lot-search

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill uses the npx package runner to download and execute the @nomadamas/k-skill package from the npm registry to retrieve updated instructions and helper files.
  • [REMOTE_CODE_EXECUTION]: The instructions direct the agent to execute shell commands via npx to interface with the author's CLI tool (@nomadamas/k-skill). The instruction.md file also provides a Node.js code example that relies on the parking-lot-search package.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests and processes untrusted data from external public API endpoints (Data.go.kr and Kakao Map) and user-supplied location strings, which could theoretically contain malicious instructions.
  • Ingestion points: Location strings provided by users and structured data returned from the api.data.go.kr and place-api.map.kakao.com endpoints (as specified in instruction.md).
  • Boundary markers: The skill requires a "Mandatory first question" to confirm the user's location, acting as a human-in-the-loop check before data processing.
  • Capability inventory: The skill environment supports Node.js execution and shell command invocation via npx (as seen in SKILL.md).
  • Sanitization: The instructions do not specify explicit sanitization or schema validation for the data returned from external APIs.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 04:29 AM
Security Audit — agent-trust-hub — parking-lot-search