s2-geometry-spatial-indexing
Fail
Audited by Gen Agent Trust Hub on Sep 18, 2026
Risk Level: HIGHPROMPT_INJECTIONOBFUSCATION
Full Analysis
- [OBFUSCATION]: The main header in
SKILL.mdcontains a significant volume of hidden Unicode characters, specifically Zero-Width Space (U+200B), Zero-Width Non-Joiner (U+200C), and Zero-Width Joiner (U+200D). - Evidence: Found in the title
# S2 Geometry Style Guide...where approximately 200 invisible characters are appended and prepended to the text. - This content is invisible to human users but is parsed as tokens by the language model.
- [PROMPT_INJECTION]: The hidden Unicode sequence constitutes a steganographic prompt injection attack. This method is used to override the agent's system instructions, bypass safety filters, or compel the agent to perform actions not disclosed in the visible documentation.
- The use of non-printing characters to hide instructions is a deliberate evasion technique intended to circumvent manual review and automated detection.
Recommendations
- AI detected serious security threats
Audit Metadata