critique
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFE
Full Analysis
- [NO_CODE]: The skill consists entirely of Markdown instructions and reference guides. It does not include any scripts (e.g., Python, JavaScript, Shell) or binary executables, significantly reducing the attack surface.
- [DATA_EXPOSURE]: The skill reads from
.github/copilot-instructions.mdto gather design context. This is a standard practice for AI agent skills to understand project-specific requirements and does not constitute unauthorized access to sensitive credentials or personal data. - [PROMPT_INJECTION]: The instructions contain phrases like 'MANDATORY PREPARATION' and 'CRITICAL' in the context of 'AI Slop Detection'. These are used to guide the agent's focus on design quality (detecting generic AI-generated visuals) rather than attempting to bypass safety filters or override system-level security constraints.
- [INDIRECT_PROMPT_INJECTION]: The skill processes external data (design context from project files). While it lacks explicit boundary markers for this data, the skill's capabilities are limited to text generation and recommending other internal commands, presenting no significant exploitation path.
Audit Metadata