security-scanner

Pass

Audited by Gen Agent Trust Hub on Apr 22, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No evidence of instructions attempting to bypass safety filters, override core agent behavior, or extract internal system prompts was found.
  • [DATA_EXFILTRATION]: The skill does not access sensitive local files or perform unauthorized network operations. No hardcoded credentials or secrets were detected.
  • [OBFUSCATION]: The content is provided in plain text with no use of Base64, zero-width characters, homoglyphs, or other encoding techniques to hide malicious intent.
  • [REMOTE_CODE_EXECUTION]: The skill does not download or execute remote scripts, nor does it install external packages at runtime.
  • [COMMAND_EXECUTION]: There are no shell commands, system calls, or subprocess executions defined in the instructions.
  • [INDIRECT_PROMPT_INJECTION]: While the skill is designed to process user-provided code (untrusted data), it lacks the capabilities (tools, file access, or network access) that would make it vulnerable to exploitation through indirect prompt injection. Its function is limited to text analysis.
  • [DYNAMIC_EXECUTION]: The skill does not perform runtime code generation, compilation, or unsafe deserialization.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 22, 2026, 03:29 PM
Security Audit — agent-trust-hub — security-scanner