art-bible

Pass

Audited by Gen Agent Trust Hub on Sep 30, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONDYNAMIC_CONTEXT_INJECTION
Full Analysis
  • [DYNAMIC_CONTEXT_INJECTION]: The skill uses the !command syntax to execute a local configuration script (yaml-helper.sh) when the skill is loaded. This command is used to resolve environment settings like review_mode and workflow. The execution is restricted to a specific script path and hardcoded configuration keys, posing minimal risk.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes data from external project files which may contain untrusted content.\n
  • Ingestion points: Content is read from design/gdd/game-concept.md, project.yaml, and design/art/art-bible.md via Grep and Read operations.\n
  • Boundary markers: The skill does not implement explicit delimiters or instructions to ignore embedded commands within the read data before processing it.\n
  • Capability inventory: The skill has the ability to delegate tasks to sub-agents (Agent), write/edit files, and execute a restricted set of shell commands via Bash.\n
  • Sanitization: No validation or sanitization is performed on the data extracted from game design documents before it is passed to sub-agents for further processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 30, 2026, 06:52 PM
Security Audit — agent-trust-hub — art-bible