using-superpowers
Warn
Audited by Gen Agent Trust Hub on Apr 15, 2026
Risk Level: MEDIUMPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill employs absolute and imperative language to override the agent's operational autonomy and standard instruction following.
- Evidence: "If you think there is even a 1% chance a skill might apply to what you are doing, you ABSOLUTELY MUST invoke the skill."
- Evidence: "This is not negotiable. This is not optional. You cannot rationalize your way out of this."
- [PROMPT_INJECTION]: The skill explicitly instructs the agent to suppress its own reasoning and internal filters regarding task assessment and workflow prioritization.
- Evidence: The "Red Flags" section targets and attempts to deconstruct the agent's internal reasoning (e.g., "I need more context first", "This is just a simple question") and mandates the immediate execution of skills instead.
- [PROMPT_INJECTION]: The instructions mandate a specific tool-invocation flow that prioritizes external skill execution over the agent's standard response protocols, including clarifying questions.
- Evidence: "Invoke relevant or requested skills BEFORE any response or action. Even a 1% chance a skill might apply means that you should invoke the skill to check."
- Evidence: "Skill check comes BEFORE clarifying questions."
- [PROMPT_INJECTION]: The skill includes instructions that prevent the agent from inspecting skill files using standard tools, forcing a specific execution pathway.
- Evidence: "Never use the Read tool on skill files."
Audit Metadata