maximalist-wall-decorator

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill exhibits an attack surface for indirect prompt injection through its tool permissions.
  • Ingestion points: The skill is configured with access to WebFetch and Read tools in SKILL.md, enabling the ingestion of potentially untrusted data from external sources.
  • Boundary markers: Instructions do not include specific delimiters or warnings to ignore instructions embedded in external data.
  • Capability inventory: The skill has the ability to perform Write and Edit operations on the file system and generate images via stability-ai-generate-image, which could be triggered by malicious inputs.
  • Sanitization: No sanitization or content validation mechanisms are implemented for external data processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 08:59 AM
Security Audit — agent-trust-hub — maximalist-wall-decorator