ask-matt

Pass

Audited by Gen Agent Trust Hub on Aug 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of informational markdown and configuration settings. It functions as a 'table of contents' and educational resource for managing agent workflows.
  • [EXTERNAL_DOWNLOADS]: The documentation references an external educational site at aihero.dev to provide context on large language model context window limitations ('smart zone'). This is a well-known community resource for AI developers.
  • [INDIRECT_PROMPT_INJECTION]: The skill outlines workflows that ingest external data, such as bug reports (/triage) and research sources (/research). However, it provides guidance on context hygiene and phase boundaries to help manage the risks associated with processing external content.
  • [COMMAND_EXECUTION]: The documentation mentions a /wizard utility that generates interactive bash scripts to assist users in setting up environment variables and repository secrets. This is described as a human-in-the-loop configuration aid.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 13, 2026, 03:08 AM
Security Audit — agent-trust-hub — ask-matt