techsmith-deploy-integration
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to read external documentation from TechSmith support sites and local manifests. While this involves processing untrusted or external data, the skill includes explicit safeguards, such as the requirement to redact all license keys, account identifiers, and activation artifacts before processing or outputting data.
- [EXTERNAL_DOWNLOADS]: The skill and its references include links to official TechSmith documentation and sample code hosted on
techsmith.comand GitHub. These are well-known vendor resources necessary for the skill's stated purpose of enterprise software deployment. - [COMMAND_EXECUTION]: While the skill involves preparing deployment artifacts like MSI and MST files, it provides a high-level orchestration workflow rather than executing arbitrary or dangerous shell commands. It relies on standard vendor tooling for these operations.
Audit Metadata