instinct-system

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements a sophisticated instructional framework for 'instincts' and 'memory' management using standard markdown files (.claude/instincts.md, MEMORY.md, and .claude/learning-log.md).
  • [DATA_EXPOSURE_AND_EXFILTRATION]: While the skill involves reading and writing files, these operations are confined to the local project environment for the purpose of maintaining developer-specified coding standards and project knowledge. No external network operations or sensitive file accesses (e.g., credentials) were detected.
  • [PROMPT_INJECTION]: The skill uses phrases like 'remember this' and 'never do that again' as triggers for its learning system. These are benign within the context of the skill's purpose to manage user-defined coding conventions and do not attempt to bypass safety filters or override core agent behavior.
  • [REMOTE_CODE_EXECUTION]: No remote code execution patterns, external downloads, or dynamic execution of untrusted code were found. The skill relies entirely on text-based memory files.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 03:51 PM
Security Audit — agent-trust-hub — instinct-system