Trust Assessment
cloudflare-deploy received a trust score of 85/100, placing it in the Mostly Trusted category. This skill has passed most security checks with only minor considerations noted.
SkillShield's automated analysis identified 1 finding: 0 critical, 1 high, 0 medium, and 0 low severity. Key findings include Privilege Escalation via Prompt Injection.
The analysis covered 4 layers: Manifest Analysis, Static Code Analysis, Dependency Graph, LLM Behavioral Safety. All layers scored 70 or above, reflecting consistent security practices.
Last analyzed on August 1, 2026 (commit 529b8103). SkillShield performs automated 4-layer security analysis on AI skills and MCP servers.
Layer Breakdown
Behavioral Risk Signals
Security Findings1
| Severity | Finding | Layer | Location | |
|---|---|---|---|---|
| HIGH | Privilege Escalation via Prompt Injection The skill contains instructions directing the host LLM to escalate its sandbox permissions ('sandbox_permissions=require_escalated') when network calls are blocked or fail. This represents a prompt injection risk where untrusted skill content can manipulate the agent into bypassing sandbox restrictions, potentially leading to unauthorized network access or host compromise. Remove all instructions that direct the LLM to escalate sandbox permissions or modify its execution environment parameters. Sandbox escalation should only be controlled by explicit user configuration or platform-level policies, not by instructions within the skill content. | LLM | SKILL.md:7 |
Scan History
Embed Code
[](https://skillshield.io/report/847c0136ddc85a16)
Powered by SkillShield