skills/ikatkov/agent-skills/grill-me/Gen Agent Trust Hub

grill-me

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: No malicious patterns or security vulnerabilities were identified. The skill is entirely composed of natural language instructions intended to guide the agent's persona during a design review process.
  • [NO_CODE]: The skill does not include any scripts, executables, or external package dependencies. The YAML frontmatter includes 'disable-model-invocation: true', which is a security-positive configuration that restricts the agent's capabilities.
  • [PROMPT_INJECTION]: The skill instructs the agent to explore the codebase to answer questions. This creates an indirect prompt injection surface where malicious instructions in the code could influence the agent. However, this is an inherent and intended behavior for code-analysis tools.
  • Ingestion points: Local codebase files.
  • Boundary markers: Not specified in instructions.
  • Capability inventory: No tools or commands are defined within the skill itself.
  • Sanitization: Not specified.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 05:05 PM
Security Audit — agent-trust-hub — grill-me