skill-development
Pass
Audited by Gen Agent Trust Hub on Sep 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is purely instructional, serving as a developer guide for creating modular agent capabilities. It focuses on procedural knowledge, design principles like progressive disclosure, and documentation standards.
- [COMMAND_EXECUTION]: The skill includes examples of standard shell commands (mkdir, touch) for local directory structure creation. These are presented as manual steps for developers rather than automated or malicious execution chains.
- [DYNAMIC_EXECUTION]: While the skill mentions the existence of executable scripts within a skill's structure (e.g., Python or Bash utilities), it does not include or execute any such code itself. It provides guidance on when and how developers should implement their own utility scripts for deterministic tasks.
- [INDIRECT_PROMPT_INJECTION]: The skill provides a methodology for processing user requirements into skill definitions. While it ingests user examples to plan functionality, it lacks automated execution capabilities or data exfiltration paths that would make it vulnerable to exploitation.
Audit Metadata