T03 · Remote Payload Retrieval and Execution
- Location
src/gep/prompt.js:12- Finding
Untrusted Hub payloads are converted into authoritative executor instructions
- Content
View full analysis
0) { _setPayloadCache(selectedAssetId, fullResults[0]); pick.match = { ...pick.match, ...fullResults[0] }; } } ``` `src/gep/prompt.js:12-45`: ```js function buildReusePrompt({ capsule, signals, nowIso }) { const payload = capsule.payload || capsule; const summary = payload.summary || capsule.summary || '(no summary)'; const gene = payload.gene || capsule.gene || '(unknown)'; const confidence = payload.confidence || capsule.confidence || 0; return ` GEP -- REUSE MODE (Search-First) [${nowIso || new Date().toISOString()}] You are applying a VERIFIED solution from the EvoMap Hub. Summary: ${summary} Instructions: 1. Read the capsule details below. 2. Apply the fix to the local codebase, adapting paths/names. 3. Run validation to confirm it works. 4. If passed, run: node index.js solidify 5. If failed, ROLLBACK and report. Capsule ...[truncated 3618 chars]- Remediation
View remediation
