skill-creator

Pass

Audited by Gen Agent Trust Hub on Jul 28, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill includes Python utilities (scripts/init_skill.py and scripts/package_skill.py) designed to automate the creation of project structures and the zipping of skill packages. These scripts interact with the local file system to create directories and write files, which is necessary for the skill's stated purpose as a developer tool.- [EXTERNAL_DOWNLOADS]: The script scripts/quick_validate.py utilizes the PyYAML library to parse configuration metadata. This is a standard dependency for handling YAML data structures.- [SAFE]: The code employs secure practices, such as using yaml.safe_load() to prevent unsafe deserialization during validation. No indicators of prompt injection, data exfiltration, or obfuscation were found across the instructions or supporting scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 28, 2026, 05:45 AM
Security Audit — agent-trust-hub — skill-creator