review-persona
Pass
Audited by Gen Agent Trust Hub on Mar 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary functionality is implemented in Python and focuses on validating character data provided in YAML and Markdown formats. No malicious instructions or bypass attempts were found.
- [SAFE]: Data ingestion is handled securely using
yaml.safe_load()insrc/review.py, which prevents YAML-based code execution vulnerabilities. - [SAFE]: The skill uses allowed tools such as
WebFetchandWebSearchas intended for research-backed validation via the/dogpileintegration. No unauthorized network operations or data exfiltration patterns were detected. - [SAFE]: Environment handling in
run.shandsanity.shfollows standard development practices for local environment isolation and does not perform any suspicious privilege escalation or persistence actions. - [SAFE]: Memory integration in
memory_integration.pyuses a standard internal client pattern for recalling and storing session-specific knowledge without exposing sensitive system data.
Audit Metadata