promptdeck
Pass
Audited by Gen Agent Trust Hub on Sep 29, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill recommends installing the promptdeck tool from the vendor repository using 'brew install itamaker/tap/promptdeck' or via GitHub at 'github.com/itamaker/promptdeck-skill'.\n- [COMMAND_EXECUTION]: Instructions are provided for local Go-based compilation and execution of the source code via 'go build' and 'go run'.\n- [COMMAND_EXECUTION]: Subcommands allow writing or silently overwriting files at arbitrary local paths through the -out, -out-dir, and -manifest flags.\n- [INDIRECT_PROMPT_INJECTION]: The skill ingests templates and JSON variables to generate prompt variants, creating a surface for indirect instructions to influence agent behavior.\n
- Ingestion points: Input data is read from files provided to the -template, -vars, -matrix, and -scores flags.\n
- Boundary markers: The rendering process does not utilize delimiters to separate untrusted variable data from the prompt structure.\n
- Capability inventory: The skill is capable of writing generated content to the local filesystem and invoking a terminal-based interactive UI.\n
- Sanitization: Variable content is interpolated into templates without escaping or validation mechanisms.
Audit Metadata