screenplay-analyst

Pass

Audited by Gen Agent Trust Hub on Sep 2, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted screenplay data via the renku screenplay analyze context command. This content is interpolated into the agent's context without explicit boundary markers or instructions to treat it as data only, potentially allowing embedded instructions in the script to affect agent actions.\n
  • Ingestion points: SKILL.md and references/screenplay-analysis-cli-workflow.md ingest data via renku screenplay analyze context.\n
  • Boundary markers: Absent. The instructions do not provide clear delimiters or negative constraints to isolate screenplay text from agent instructions.\n
  • Capability inventory: The agent has the capability to execute renku CLI commands to read and write project files, as outlined in SKILL.md.\n
  • Sanitization: The skill mitigates risks by requiring structural validation through renku screenplay analyze validate before any analysis is persisted via renku screenplay analyze write.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 2, 2026, 02:45 AM
Security Audit — agent-trust-hub — screenplay-analyst