touying
Pass
Audited by Gen Agent Trust Hub on Aug 28, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The documentation includes instructions for running specific shell commands. These include
typst queryfor extracting metadata from.typfiles andnpm run docusaurusfor documentation management. These commands are consistent with the skill's purpose for document processing and development. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user-provided Typst files (
.typ). This creates a data ingestion surface. The skill provides guidelines for reading and writing these files, but does not include patterns for automated execution of untrusted content or data exfiltration.
Audit Metadata