skills/skogai/lore/skogai-jq/Gen Agent Trust Hub

skogai-jq

Pass

Audited by Gen Agent Trust Hub on Feb 16, 2026

Risk Level: LOWCOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION] (LOW): The skill executes local jq filters via the -f flag and includes shell scripts (test.sh) for validation and testing.
  • [COMMAND_EXECUTION] (LOW): Vulnerability surface for Indirect Prompt Injection. 1. Ingestion points: External JSON data provided via stdin or local files. 2. Boundary markers: Uses jq --arg and --argjson flags to isolate data from logic. 3. Capability inventory: Performs data manipulation using jq within shell subprocesses. 4. Sanitization: Employs structured parameter passing to prevent injection into the transformation filters.
Audit Metadata
Risk Level
LOW
Analyzed
Feb 16, 2026, 12:29 PM