lovstudio-bp-outline
Pass
Audited by Gen Agent Trust Hub on Aug 3, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill uses a bundled Python script (
scripts/init_bp.py) to set up a project workspace. The script uses standard libraries to resolve paths from environment variables and configuration files, with built-in safety checks to prevent directory traversal or overwriting existing data. - [PROMPT_INJECTION]: As the skill is designed to process external project documentation and websites, it has a surface for indirect prompt injection. The skill instructions encourage the agent to verify claims against authoritative sources, which helps mitigate potential misinformation embedded in processed data.
Audit Metadata