duotone-press-collage

Pass

Audited by Gen Agent Trust Hub on Aug 16, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: No executable scripts (.py, .js, .sh) or binary files were found. The skill operates solely through prompt templates and instructional logic expressed in Markdown.
  • [SAFE]: No instances of data exfiltration or hardcoded credentials were detected. The skill does not access sensitive local paths or perform network requests.
  • [SAFE]: No obfuscation techniques, such as hidden Unicode characters or Base64-encoded commands, were found in the skill metadata or body.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests user input (theme, labels, and text) to interpolate into generated prompts. While it lacks explicit boundary markers or sanitization for these inputs, the impact is restricted to the generated text output and involves no execution capabilities, posing no significant risk.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 16, 2026, 06:51 AM
Security Audit — agent-trust-hub — duotone-press-collage