diagramming-expert

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill provides reference materials and best practices for text-based visualization. No suspicious commands or behaviors were identified during the analysis.
  • [NO_CODE]: The skill is composed entirely of static Markdown files and reference documentation. It does not include any scripts, dependencies, or automated installation logic.
  • [DATA_EXPOSURE]: Analysis of all files confirmed the absence of hardcoded credentials, API keys, or sensitive system file paths.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines a process for visualizing user-provided content. Evidence chain: 1) Ingestion points: Input text provided by users for diagram generation (SKILL.md). 2) Boundary markers: The skill encourages the use of Markdown and Mermaid code blocks for structure. 3) Capability inventory: The skill is restricted to Read, Write, and Edit tools with no network or shell execution capabilities. 4) Sanitization: No explicit data sanitization is performed. Given the lack of dangerous functional capabilities, the risk associated with processing untrusted data is naturally low.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 12:13 AM
Security Audit — agent-trust-hub — diagramming-expert