roblox-game

Pass

Audited by Gen Agent Trust Hub on Mar 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary purpose is to assist in game development using standard Roblox and community tools (Rojo, Wally).
  • [SAFE]: No obfuscated content, hardcoded credentials, or malicious intent was found in the provided templates or documentation.
  • [SAFE]: The skill provides deep technical knowledge on preventing exploits (e.g., SE-1 to SE-3 in references/sharp-edges.md), which enhances the security of the developer's projects.
  • [PROMPT_INJECTION]: A potential surface for indirect prompt injection exists in workflows/debug-loop.md during the collection of console logs. 1. Ingestion points: get_playtest_output and get_console_output in workflows/debug-loop.md ingest external runtime data. 2. Boundary markers: Not present in the provided markdown instructions. 3. Capability inventory: Access to execute_luau and get_script_source via MCP (see references/mcp-orchestration.md). 4. Sanitization: No explicit sanitization of console output is described. This is assessed as a low-risk vulnerability surface typical of developer-oriented debugging tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 16, 2026, 08:41 PM