cc-skill-continuous-learning
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill evaluates session transcripts which contain untrusted user input to identify learning opportunities. 1. Ingestion points: The file
evaluate-session.shreads the session transcript via the path specified in theCLAUDE_TRANSCRIPT_PATHenvironment variable. 2. Boundary markers: There are no explicit delimiters or 'ignore' instructions for the transcript content, though the script only processes metadata. 3. Capability inventory: The skill uses basic file system and text processing tools includingmkdir,jq, andgrep. 4. Sanitization: The script usesgrep -cto count message occurrences, which effectively treats the transcript as raw data and prevents the execution of any embedded instructions. - [COMMAND_EXECUTION]: The script executes standard shell commands (
jq,grep,sed) to manage its local configuration and evaluate session length. These commands are used for legitimate analytical purposes and are scoped to the agent's local environment.
Audit Metadata