text-optimizer
Pass
Audited by Gen Agent Trust Hub on Sep 18, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted user-provided content (markdown files) and possesses file-writing capabilities through the
WriteandEdittools. - Ingestion points: The skill ingests data from local
.mdfiles specified by the user or discovered in directories viaGlob,Grep, andReadtools (SKILL.md, README.md). - Boundary markers: The skill does not explicitly use instruction-ignoring delimiters or boundary markers when the agent reads and analyzes the input files, although it includes a rule (S.1) to apply XML tags to the generated output.
- Capability inventory: The skill is granted access to the
Read,Write,Edit,Grep, andGlobtools, enabling it to perform extensive filesystem operations. - Sanitization: The skill does not specify any sanitization, validation, or filtering of the external content before it is processed by the agent's logic.
Audit Metadata