touying

Pass

Audited by Gen Agent Trust Hub on Aug 28, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The documentation includes instructions for running specific shell commands. These include typst query for extracting metadata from .typ files and npm run docusaurus for documentation management. These commands are consistent with the skill's purpose for document processing and development.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user-provided Typst files (.typ). This creates a data ingestion surface. The skill provides guidelines for reading and writing these files, but does not include patterns for automated execution of untrusted content or data exfiltration.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 28, 2026, 10:08 AM