techsmith-install-auth
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references official TechSmith documentation and deployment guides from trusted domains including support.techsmith.com and assets.techsmith.com, as well as official samples from their GitHub organization.
- [COMMAND_EXECUTION]: The skill describes the use of official administrative commands such as MSI/MST installers and COM registration recovery (SnagitCapture.exe /register). These are standard operations for workstation provisioning and are scoped to the intended purpose.
- [DATA_EXFILTRATION]: Explicit instructions are provided to redact license keys, account identifiers, and activation artifacts. The skill strictly prohibits pasting secrets into chat or diagnostic output, effectively mitigating risks of sensitive data exposure.
- [INDIRECT_PROMPT_INJECTION]: The skill has an attack surface through external documentation fetching, but it is well-defended. \n1. Ingestion points:
WebFetchcalls to TechSmith documentation sites. \n2. Boundary markers: Explicit check for entitlement and license ownership before processing external instructions. \n3. Capability inventory: File read/write and network fetch tools are available but restricted by instructions to official vendor sources. \n4. Sanitization: Strict redaction policy for all licensing and endpoint details.
Audit Metadata