kitty
Pass
Audited by Gen Agent Trust Hub on Mar 18, 2026
Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to use
kitten @ launchandkitten @ send-textto execute shell commands and interact with terminal windows. - [DATA_EXFILTRATION]: The
kitten @ get-textcommand is used to capture terminal output, which could potentially expose sensitive data displayed in the terminal session. - [PROMPT_INJECTION]: The skill exposes a surface for indirect prompt injection by reading terminal output which may contain untrusted data.
- Ingestion points:
kitten @ get-textas described inSKILL.md. - Boundary markers: Absent from the provided command examples.
- Capability inventory:
kitten @ launchandkitten @ send-textprovide command execution capabilities. - Sanitization: No sanitization or validation of captured text is mentioned.
Audit Metadata