content-hash-cache-pattern

Pass

Audited by ZeroLeaks on Apr 15, 2026

Risk Level: LOW
Scan Summary

The SKILL.md raises transparency concerns due to obfuscated or encoded execution paths and dense payload-like content, which meaningfully weaken a reviewer's ability to assess what the skill actually does before loading it. On prompt injection, the skill stays reasonably clear of blurring instruction and data boundaries. However, because behavior analysis was not run and the transparency issues make the skill harder to fully review, confidence is low — the scan passed on injection risk, but the obfuscation means there could be material behavioral effects that weren't surfaced by the limited testing performed.

Score
80/100
Verdict
WARNING
Confidence
low
Findings
2
Section Analysis (3)
TransparencyAT_RISK
52/100

The skill has 2 transparency concerns that weaken pre-use reviewability, mainly around obfuscated or encoded execution path and hidden or dense payload-like content.

Prompt InjectionPASS
92/100

The scanned skill keeps data and instructions reasonably separate and does not strongly encourage the agent to treat external content as policy.

Agent BehaviorSkipped

Behavior analysis was not run.

Findings (2)
HIGH

Obfuscated or encoded execution path

HIGH

Hidden or dense payload-like content

Coverage DetailsClick to expand
Discovered Files
1
Omitted Files
0
Analyzed Bytes
5.5 KB
Sections Completed
2
Sections Skipped
1
Behavior Probes
0/0
Audit Metadata
Score
80/100
Verdict
WARNING
Confidence
low
Sections
2/3 completed
Findings
2
Mode
risk
Files Scanned
1
Duration
81.4s
Analyzed
Apr 15, 2026, 07:21 PM
Security Audit — zeroleaks — content-hash-cache-pattern