promote-skill
Pass
Audited by Gen Agent Trust Hub on Aug 5, 2026
Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The file
skill-report.jsoncontains asecurity_auditsection that uses self-referential language to explicitly declare the skill as "safe" and characterize any potential security findings as "false positives." This is a known technique (Category 8e) used to target and mislead security analysis tools. - [PROMPT_INJECTION]:
- Ingestion points:
skill-report.jsonmetadata. - Boundary markers: Absent.
- Capability inventory: The skill utilizes shell commands (
grep,git,gh,ugig,sh1pt) and filesystem operations (creating staging directories in/tmp/). - Sanitization: Not present for the ingested metadata file.
- [COMMAND_EXECUTION]: The skill provides instructions for the agent to execute a variety of shell commands, including repository management via
ghandgit, secret scanning viagrep, and publishing via several third-party CLI tools (ugig,sh1pt,clawhub). These commands are documented and aligned with the skill's stated purpose of publishing artifacts.
Audit Metadata