android-kotlin-compose

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No override markers, role-play injections, or instructions to ignore safety protocols were detected. The skill uses standard instructional language for its intended purpose.
  • [DATA_EXFILTRATION]: No network operations (curl, wget, fetch) or access to sensitive local file paths (like credentials or SSH keys) were found. References are limited to local documentation within the skill's project structure.
  • [REMOTE_CODE_EXECUTION]: There are no patterns involving remote script execution or the installation of unverified external packages.
  • [INDIRECT_PROMPT_INJECTION]: While the skill ingests user-provided code for its 'Review Mode', it lacks capabilities such as shell access, file writing, or network transmission that would make it vulnerable to exploitation via indirect injection. The analysis is limited to providing feedback and code diffs.
  • [OBFUSCATION]: The content is clear and readable without the use of Base64 encoding, zero-width characters, homoglyphs, or other techniques to hide intent.
  • [PRIVILEGE_ESCALATION]: No administrative commands or attempts to modify system-level permissions were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 11:30 AM
Security Audit — agent-trust-hub — android-kotlin-compose