maximalist-wall-decorator
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill exhibits an attack surface for indirect prompt injection through its tool permissions.
- Ingestion points: The skill is configured with access to
WebFetchandReadtools inSKILL.md, enabling the ingestion of potentially untrusted data from external sources. - Boundary markers: Instructions do not include specific delimiters or warnings to ignore instructions embedded in external data.
- Capability inventory: The skill has the ability to perform
WriteandEditoperations on the file system and generate images viastability-ai-generate-image, which could be triggered by malicious inputs. - Sanitization: No sanitization or content validation mechanisms are implemented for external data processed by the agent.
Audit Metadata