using-superpowers

Warn

Audited by Gen Agent Trust Hub on Apr 15, 2026

Risk Level: MEDIUMPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill employs absolute and imperative language to override the agent's operational autonomy and standard instruction following.
  • Evidence: "If you think there is even a 1% chance a skill might apply to what you are doing, you ABSOLUTELY MUST invoke the skill."
  • Evidence: "This is not negotiable. This is not optional. You cannot rationalize your way out of this."
  • [PROMPT_INJECTION]: The skill explicitly instructs the agent to suppress its own reasoning and internal filters regarding task assessment and workflow prioritization.
  • Evidence: The "Red Flags" section targets and attempts to deconstruct the agent's internal reasoning (e.g., "I need more context first", "This is just a simple question") and mandates the immediate execution of skills instead.
  • [PROMPT_INJECTION]: The instructions mandate a specific tool-invocation flow that prioritizes external skill execution over the agent's standard response protocols, including clarifying questions.
  • Evidence: "Invoke relevant or requested skills BEFORE any response or action. Even a 1% chance a skill might apply means that you should invoke the skill to check."
  • Evidence: "Skill check comes BEFORE clarifying questions."
  • [PROMPT_INJECTION]: The skill includes instructions that prevent the agent from inspecting skill files using standard tools, forcing a specific execution pathway.
  • Evidence: "Never use the Read tool on skill files."
Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 15, 2026, 06:10 PM
Security Audit — agent-trust-hub — using-superpowers