skills/leonardoacosta/skills/simplify/Gen Agent Trust Hub

simplify

Pass

Audited by Gen Agent Trust Hub on Aug 2, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes git diff, npx tsc, and pnpm test to analyze and verify code changes. These are standard commands for software development workflows.
  • [EXTERNAL_DOWNLOADS]: The skill uses npx, which may download the typescript package from the npm registry. This is a common and expected behavior for TypeScript projects.
  • [PROMPT_INJECTION]: The skill has a surface for indirect prompt injection as it processes external data.
  • Ingestion points: Untrusted code changes are ingested via git diff.
  • Boundary markers: No specific delimiters are employed to isolate the code being analyzed from potential embedded instructions.
  • Capability inventory: The agent has the capability to run shell commands and modify local source files.
  • Sanitization: The skill does not sanitize or filter the content of the diff before processing it.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 2, 2026, 09:41 PM
Security Audit — agent-trust-hub — simplify