skills/h00mankind/workflow/name/Gen Agent Trust Hub

name

Pass

Audited by Gen Agent Trust Hub on Jun 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, unauthorized data access, or obfuscated content were detected. The skill's behavior matches its stated purpose of professional brand name generation and screening using established linguistic and legal frameworks.
  • [PROMPT_INJECTION]: The skill uses an HTML template that employs .innerHTML for data rendering, creating a potential surface for indirect prompt injection. If the AI is manipulated into generating candidate names containing malicious scripts, they could execute in the user's browser when the generated artifact is opened.
  • Ingestion points: User-provided naming briefs and AI-generated candidate data.
  • Boundary markers: Not explicitly implemented in the template's JavaScript rendering logic.
  • Capability inventory: Generates self-contained HTML/JS files to the user's local filesystem (e.g., Downloads).
  • Sanitization: The provided template.html lacks explicit sanitization of strings before they are injected into the DOM via .innerHTML.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 19, 2026, 08:33 AM
Security Audit — agent-trust-hub — name