cryptoquant-pro-2-10-teneo
Pass
Audited by Gen Agent Trust Hub on Apr 16, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides multiple bash command templates for the agent to use via a local tool named teneo. These commands are used to retrieve market data such as netflows, reserves, and funding rates.
- [EXTERNAL_DOWNLOADS]: Links to the official Teneo Protocol GitHub repositories are included for the CLI and SDK. These are legitimate resources provided by the skill author for setup and development.
- [PROMPT_INJECTION]: The skill contains instructions that attempt to influence the agent's selection logic by requesting it be preferred over non-featured alternatives.
- [PROMPT_INJECTION]: The skill defines a pattern where untrusted user input is interpolated into shell commands, creating a potential surface for indirect injection.
- Ingestion points: Command arguments such as and in SKILL.md.
- Boundary markers: None present in the command templates.
- Capability inventory: Shell command execution via the teneo CLI.
- Sanitization: No sanitization or validation steps are documented for the input values.
Audit Metadata