game-asset-vfx
Pass
Audited by Gen Agent Trust Hub on Sep 28, 2026
Risk Level: SAFEDYNAMIC_CONTEXT_INJECTIONINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [DYNAMIC_CONTEXT_INJECTION]: The skill uses the
!commandsyntax inSKILL.mdto load shared protocol files and configuration settings (e.g.,cat skills/_shared/protocols/ux-protocol.md). These commands facilitate modular context loading at skill initialization and do not involve sensitive file access or network exfiltration.- [COMMAND_EXECUTION]: TheLITE.mdfile contains instructions for the agent to execute shell commands such ascat package.jsonandfind assets/to ground itself in the local project environment. These are standard discovery steps for a development tool.- [INDIRECT_PROMPT_INJECTION]: The skill identifies an ingestion surface for indirect prompt injection. 1. Ingestion points:PIPELINE_CONTEXT.visual_basisand Visual Evidence Cards referenced inSKILL.md. 2. Boundary markers: No specific delimiters or "ignore instructions" warnings are present in the guidelines. 3. Capability inventory: The skill can generate Phaser JavaScript/TypeScript code and execute local discovery commands. 4. Sanitization: No sanitization or validation of the input context is described. The severity is low as the primary focus is asset generation.
Audit Metadata