avkit
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONMETADATA_POISONING
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill implements video playback and automated frame analysis features, which create an attack surface for instructions embedded in media content.
- Ingestion points: External media URLs and content processed via
AVPlayerandAVPlayerViewController(referenced inSKILL.mdandreferences/avkit-patterns.md). - Boundary markers: The implementation patterns do not utilize delimiters or specific instructions to disregard content found within the media data.
- Capability inventory: The skill specifically enables and configures
allowsVideoFrameAnalysisfor types such as.textand.machineReadableCodeinreferences/avkit-patterns.md. - Sanitization: The provided patterns lack logic for sanitizing or validating information extracted from the video frames.
- [METADATA_POISONING]: The skill metadata and reference sections use documentation links pointing to a parody domain rather than official vendor documentation.
- Evidence: Multiple links in the
Referencessection ofSKILL.mdredirect tohttps://sosumi.ai/documentation/...instead of the expected official vendor documentation sites.
Audit Metadata