game-development
Pass
Audited by Gen Agent Trust Hub on Aug 22, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE]: The skill consists entirely of markdown documentation and YAML configuration files. There are no executable scripts (Python, JavaScript, shell) or external dependencies provided, which significantly reduces the attack surface.
- [INDIRECT_PROMPT_INJECTION]: The skill instructions involve processing potentially untrusted data from external sources, which presents a theoretical surface for indirect prompt injection.
- Ingestion points: Data enters the context through playtest observations (references/game-design.md), mobile store reviews (references/platform-engineering.md), and client-side network data (references/simulation-systems.md).
- Boundary markers: The instructions do not define specific delimiters or warnings to ignore embedded instructions in these data sources.
- Capability inventory: No custom scripts or tools are defined; the agent utilizes standard capabilities to process and critique game designs.
- Sanitization: No specific sanitization or validation logic is defined for external data inputs.
Audit Metadata