reading-livekit-docs
Pass
Audited by Gen Agent Trust Hub on Sep 25, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes the
lk docsCLI command to search and fetch documentation, changelogs, and code examples. This is a standard utility provided by the vendor (LiveKit) for developer support. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to process content from external sources such as documentation pages and code repositories.
- Ingestion points: Data enters the context from the output of the
lk docsCLI tool and web searches targetingdocs.livekit.io. - Boundary markers: The instructions do not specify strict delimiters for external content, although they do advise the agent to cite sources and verify information against the installed SDK versions.
- Capability inventory: Shell command execution for the vendor-provided
lkCLI. - Sanitization: There are no explicit instructions for sanitizing or escaping the content retrieved from external documentation sources before it is processed by the agent.
Audit Metadata