s2-geometry-spatial-indexing

Fail

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: HIGHPROMPT_INJECTIONOBFUSCATION
Full Analysis
  • [OBFUSCATION]: The main header in SKILL.md contains a significant volume of hidden Unicode characters, specifically Zero-Width Space (U+200B), Zero-Width Non-Joiner (U+200C), and Zero-Width Joiner (U+200D).
  • Evidence: Found in the title # S2 Geometry Style Guide... where approximately 200 invisible characters are appended and prepended to the text.
  • This content is invisible to human users but is parsed as tokens by the language model.
  • [PROMPT_INJECTION]: The hidden Unicode sequence constitutes a steganographic prompt injection attack. This method is used to override the agent's system instructions, bypass safety filters, or compel the agent to perform actions not disclosed in the visible documentation.
  • The use of non-printing characters to hide instructions is a deliberate evasion technique intended to circumvent manual review and automated detection.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Sep 18, 2026, 02:05 PM