shabbat-times

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues detected. The skill provides implementation examples for fetching Jewish calendar data from a well-known service (hebcal.com), which is consistent with its stated purpose.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes data from an external source (hebcal.com). This presents a minimal surface for indirect prompt injection that is considered safe due to the reputable nature of the data source and the lack of dangerous capabilities in the provided code.
  • Ingestion points: Data fetched from https://www.hebcal.com/ (SKILL.md)
  • Boundary markers: Absent
  • Capability inventory: The skill only performs read operations and data display; no file-writing, shell execution, or privilege escalation capabilities were found.
  • Sanitization: Uses standard JSON parsing for API responses.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 05:04 PM
Security Audit — agent-trust-hub — shabbat-times