skill-creator
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill employs Python's
subprocessmodule across several scripts, includingscripts/run_eval.py,scripts/improve_description.py, andeval-viewer/generate_review.py. These scripts execute theclaudecommand-line interface to perform evaluation runs and optimization tasks, as well as system utilities likelsofto manage the local review server. These operations are core to the skill's lifecycle management functions. - [EXTERNAL_DOWNLOADS]: The
eval-viewer/viewer.htmlfile includes a script reference to the SheetJS library (xlsx.full.min.js) hosted oncdn.sheetjs.com. This is used to render Excel outputs within the browser-based review tool. SheetJS is a well-known and recognized service for spreadsheet processing in web applications. - [INDIRECT_PROMPT_INJECTION]: The skill features a surface for indirect prompt injection as it ingests and processes user-provided test prompts and feedback from files like
evals/evals.jsonandfeedback.json. This data is used to drive the AI agent's evaluation and improvement loops. This capability is intrinsic to the tool's purpose of prompt engineering and skill optimization.
Audit Metadata