techsmith-webhooks-events

Pass

Audited by Gen Agent Trust Hub on Sep 10, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external file artifacts and event data, representing a potential injection surface.
  • Ingestion points: File system watchers and COM capture events monitor local artifact creation (SKILL.md).
  • Boundary markers: Instructions mandate path canonicalization and the rejection of escapes to maintain security boundaries.
  • Capability inventory: The skill uses Read, Glob, Grep, WebFetch, Write, and Edit tools for processing.
  • Sanitization: Explicit instructions are provided to redact keys, validate file formats, and verify checksums before processing artifacts.
  • [EXTERNAL_DOWNLOADS]: References official documentation and code samples from TechSmith.
  • The skill points to official domains including assets.techsmith.com, support.techsmith.com, and the TechSmith GitHub organization for verified integration guidelines.
  • [COMMAND_EXECUTION]: Integrates with local TechSmith executables for automation tasks.
  • Documentation references standard automation interfaces such as Snagit COM (Snagit.ImageCapture.1) and CamtasiaRecorder.exe command-line arguments.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 10, 2026, 04:28 PM
Security Audit — agent-trust-hub — techsmith-webhooks-events