prompt-engineering
Pass
Audited by Gen Agent Trust Hub on May 4, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill's reference files contain examples of prompt injection and jailbreak patterns (e.g., 'Ignore previous instructions', 'DAN' mode). These are clearly documented as 'Minimal Reproducible Prompts' for the purpose of teaching prompt auditing and defense, and are not instructions for the agent to bypass its own safety protocols.
- [UNVERIFIABLE_DEPENDENCIES_AND_RCE]: The README file describes an installation method using
npxto fetch the skill from a global registry. This is a standard distribution method for AI agent tools and follows legitimate vendor resource patterns for 'CodeAlive-AI'. - [DATA_EXPOSURE_AND_EXFILTRATION]: No evidence of sensitive data access or network exfiltration was found. The skill operates locally within the agent's context and does not interact with external APIs or the internet.
- [DYNAMIC_EXECUTION]: The skill consists of markdown instructions and reference guides; it does not contain or generate executable code at runtime.
Audit Metadata