shabbat-times
Pass
Audited by Gen Agent Trust Hub on Sep 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected. The skill provides implementation examples for fetching Jewish calendar data from a well-known service (hebcal.com), which is consistent with its stated purpose.
- [INDIRECT_PROMPT_INJECTION]: The skill processes data from an external source (hebcal.com). This presents a minimal surface for indirect prompt injection that is considered safe due to the reputable nature of the data source and the lack of dangerous capabilities in the provided code.
- Ingestion points: Data fetched from
https://www.hebcal.com/(SKILL.md) - Boundary markers: Absent
- Capability inventory: The skill only performs read operations and data display; no file-writing, shell execution, or privilege escalation capabilities were found.
- Sanitization: Uses standard JSON parsing for API responses.
Audit Metadata