mcp-us-equities-ops
Pass
Audited by Gen Agent Trust Hub on Mar 10, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill requires the use of a CLI tool named
rwto interact with a remote VPS, executing commands likerw setupandrw callwith complex JSON arguments. - [EXTERNAL_DOWNLOADS]: The skill instructs the user to configure the
rwtool to connect to a specific, untrusted IP addresshttp://113.44.56.214:18080/mcp/. This endpoint is used as the control plane for all operational tasks. - [PROMPT_INJECTION]: The
track_runfunctionality allows the agent to ingest logs from remote pipeline executions (include_logs: true). Because these logs originate from an external system and are not explicitly sanitized before being processed by the agent, they represent an indirect prompt injection surface.
Audit Metadata