ctf-osint
Audited by ZeroLeaks on Apr 15, 2026
The skill receives a WARNING verdict driven by a transparency concern: an obfuscated or encoded execution path weakens the ability to fully review what the skill does before loading, which limits pre-use confidence. On the positive side, instruction and data boundaries stay reasonably clear, and nothing in the scanned content strongly encourages the agent to treat external input as trusted policy. Behavior analysis was not run, so there is no evidence either way on whether loading the skill materially changes downstream agent behavior. Confidence is low because the combination of an unresolved transparency finding and the absence of behavior testing leaves meaningful gaps that finite scanning alone cannot close.
The skill has 1 transparency concern that weaken pre-use reviewability, mainly around obfuscated or encoded execution path.
The scanned skill keeps data and instructions reasonably separate and does not strongly encourage the agent to treat external content as policy.
Behavior analysis was not run.
Obfuscated or encoded execution path