review-persona

Pass

Audited by Gen Agent Trust Hub on Mar 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary functionality is implemented in Python and focuses on validating character data provided in YAML and Markdown formats. No malicious instructions or bypass attempts were found.
  • [SAFE]: Data ingestion is handled securely using yaml.safe_load() in src/review.py, which prevents YAML-based code execution vulnerabilities.
  • [SAFE]: The skill uses allowed tools such as WebFetch and WebSearch as intended for research-backed validation via the /dogpile integration. No unauthorized network operations or data exfiltration patterns were detected.
  • [SAFE]: Environment handling in run.sh and sanity.sh follows standard development practices for local environment isolation and does not perform any suspicious privilege escalation or persistence actions.
  • [SAFE]: Memory integration in memory_integration.py uses a standard internal client pattern for recalling and storing session-specific knowledge without exposing sensitive system data.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 17, 2026, 06:37 AM
Security Audit — agent-trust-hub — review-persona