wiki-narrate

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues were detected. The skill follows best practices for local information retrieval and narrative generation.
  • [COMMAND_EXECUTION]: The skill uses the rg (ripgrep) command for searching vault content. This is a standard search utility used for retrieval and does not involve remote code execution or unsafe parameters.
  • [PROMPT_INJECTION]: The skill processes external vault content, creating a surface for indirect prompt injection. This is mitigated by the 'Claim Ledger and Citation Audit' protocol, which requires the agent to verify all facts against vault pages and use specific narrative structures. Ingestion points: Vault pages accessed via ripgrep and QMD. Boundary markers: Mandatory Claim Ledger requirement for all factual statements and citations. Capability inventory: Local file reading and writing restricted to the Obsidian vault directory structure. Sanitization: Privacy filtering via tags to skip internal or sensitive content.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 02:24 AM
Security Audit — agent-trust-hub — wiki-narrate