expert-munger

Pass

Audited by Gen Agent Trust Hub on Apr 3, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security risks were identified during the analysis of the skill's instructions, metadata, or reference files.
  • [PROMPT_INJECTION]: The skill utilizes structured persona instructions to guide the agent's reasoning process (e.g., emphasizing 'Inversion' and 'Circle of Competence'). These instructions are legitimate behavioral constraints aligned with the skill's stated purpose and do not attempt to override safety guidelines or extract system prompts.
  • [EXTERNAL_DOWNLOADS]: The file references/sources.md contains numerous links to well-known and trusted external services, including Amazon, Stripe Press, CNBC, and YouTube. These are provided for informational reference and book verification, posing no risk of silent malicious downloads or runtime code execution.
  • [COMMAND_EXECUTION]: The SKILL.md file contains a command block suggesting the use of npx openskills to load the module. This is a standard operational instruction for users of the openskills framework and does not represent an automated or hidden command execution vulnerability.
  • [DATA_EXFILTRATION]: There is no evidence of the skill attempting to access sensitive local files (such as SSH keys or environment variables) or performing unauthorized network operations to exfiltrate data.
  • [OBFUSCATION]: All content is written in clear, human-readable Markdown and YAML. No encoded strings, hidden characters, or steganographic patterns were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 3, 2026, 04:20 PM