teneo-agent-deployment
Pass
Audited by Gen Agent Trust Hub on Apr 2, 2026
Risk Level: SAFEPROMPT_INJECTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The skill includes explicit instructions for the agent to bypass human-in-the-loop checkpoints. It commands the agent to "complete every step autonomously — no user action required" and "do not ask the user to intervene," which overrides standard safety protocols regarding user confirmation for executable actions.
- [EXTERNAL_DOWNLOADS]: The setup process fetches and executes the
@teneo-protocol/clipackage from the npm registry usingnpx. This is a vendor-provided tool used for the skill's primary purpose. - [COMMAND_EXECUTION]: The skill uses various shell commands to verify environment states, scaffold Go projects, and manage system services (launchd/systemd) to maintain agent persistence on the host machine.
Audit Metadata