build-game-map-editor

Pass

Audited by Gen Agent Trust Hub on Aug 16, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill includes standard development and testing commands (e.g., npm run build, npm test, node --test). These are used for verifying the integrity and security of the map editor implementation and are executed within the user's development environment for legitimate purposes.
  • [DATA_EXPOSURE]: The skill instructs on the correct use of environment variables (e.g., VESPERFALL_MAP_EDITOR_PASSWORD) for access control. It explicitly warns against bundling, logging, or exporting these secrets, following security best practices for credential management.
  • [PROMPT_INJECTION]: No evidence of prompt injection, jailbreak attempts, or instructions to ignore safety filters was found. The instructions are focused on providing a technical framework for building a specific tool.
  • [REMOTE_CODE_EXECUTION]: No patterns of downloading and executing remote code (e.g., curl | bash) were identified. All script execution is local to the repository and related to standard build and test processes.
  • [EXTERNAL_DOWNLOADS]: The skill does not perform any external downloads from untrusted sources. All assets (icons, models) are expected to be local to the production repository or resolved through official resolvers.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 16, 2026, 07:31 AM
Security Audit — agent-trust-hub — build-game-map-editor