strategic-gifting
Pass
Audited by Gen Agent Trust Hub on Sep 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is primarily composed of informational markdown files, templates, and strategic frameworks for corporate gifting. It does not request sensitive permissions or perform any network operations to unknown or untrusted domains.
- [COMMAND_EXECUTION]: The skill includes a local utility script
scripts/check-output.pyused to validate the presence of specific keywords in generated deliverables. The script performs simple regex-based text analysis on a file path provided via command-line arguments and does not exhibit any dangerous behaviors such as network access, privilege escalation, or persistence mechanisms. - [INDIRECT_PROMPT_INJECTION]: While the skill processes user-supplied information to generate gift plans, it lacks the necessary capability tier (e.g., automated network execution or sensitive file writes) to facilitate an exploit. The transformation of input into structured templates is a standard, low-risk operation.
Audit Metadata