art-bible
Pass
Audited by Gen Agent Trust Hub on Sep 30, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONDYNAMIC_CONTEXT_INJECTION
Full Analysis
- [DYNAMIC_CONTEXT_INJECTION]: The skill uses the
!commandsyntax to execute a local configuration script (yaml-helper.sh) when the skill is loaded. This command is used to resolve environment settings likereview_modeandworkflow. The execution is restricted to a specific script path and hardcoded configuration keys, posing minimal risk.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes data from external project files which may contain untrusted content.\n - Ingestion points: Content is read from
design/gdd/game-concept.md,project.yaml, anddesign/art/art-bible.mdviaGrepandReadoperations.\n - Boundary markers: The skill does not implement explicit delimiters or instructions to ignore embedded commands within the read data before processing it.\n
- Capability inventory: The skill has the ability to delegate tasks to sub-agents (
Agent), write/edit files, and execute a restricted set of shell commands viaBash.\n - Sanitization: No validation or sanitization is performed on the data extracted from game design documents before it is passed to sub-agents for further processing.
Audit Metadata