genre-craft
Pass
Audited by Gen Agent Trust Hub on Sep 28, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructions direct the agent to utilize a local CLI tool named
storyor a fallback script located at../story-maintenance/scripts/story.js. These tools are used for project maintenance tasks such as indexing, link validation, and generating clue diagrams based on local files. - [INDIRECT_PROMPT_INJECTION]: The skill functions by ingesting and analyzing user-created content within a story project (specifically
story.md,plot/timeline.md, and thecontinuity/clues/directory). While this involves processing untrusted data to perform genre audits, it is consistent with the primary purpose of the skill and relies on standard project file parsing. -- Ingestion points: Files likestory.md,plot/timeline.md, and markdown files incontinuity/clues/are read to extract genre data, clues, and timelines. -- Boundary markers: None explicitly defined in the skill instructions for data ingestion. -- Capability inventory: The skill can execute local shell commands via thestoryCLI and write new clue files to thecontinuity/clues/directory. -- Sanitization: No specific sanitization or filtering of the ingested story content is described in the workflow.
Audit Metadata