game-knowledge

Fail

Audited by Gen Agent Trust Hub on Aug 7, 2026

Risk Level: CRITICALEXTERNAL_DOWNLOADSNO_CODE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Automated security scans have confirmed detections on multiple external URLs included in the skill documentation. Specifically, 'https://script2shorts.app/blog/game-devlog-content-strategy' is flagged as a phishing site, and 'https://www.steampageanalyzer.com/blog/how-many-wishlists-before-launch' is on a blacklist. These URLs appear as informational sources in files such as 'references/release/launch-and-post-launch.md' and 'references/corpus/production-business-live/wishlists-and-launch-math.md'. Directing users to phishing or blacklisted domains via an AI agent is a critical security vulnerability.
  • [NO_CODE]: The skill consists entirely of Markdown documentation and does not contain any executable code, scripts, or binaries. While this architecture prevents direct technical exploitation of the environment, it does not alleviate the risk posed by the confirmed malicious content embedded in the documentation text.
Recommendations
  • CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
  • AI detected serious security threats
  • Contains 3 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Aug 7, 2026, 02:48 PM
Security Audit — agent-trust-hub — game-knowledge