lovstudio-bp-outline

Pass

Audited by Gen Agent Trust Hub on Aug 3, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses a bundled Python script (scripts/init_bp.py) to set up a project workspace. The script uses standard libraries to resolve paths from environment variables and configuration files, with built-in safety checks to prevent directory traversal or overwriting existing data.
  • [PROMPT_INJECTION]: As the skill is designed to process external project documentation and websites, it has a surface for indirect prompt injection. The skill instructions encourage the agent to verify claims against authoritative sources, which helps mitigate potential misinformation embedded in processed data.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 3, 2026, 08:34 AM
Security Audit — agent-trust-hub — lovstudio-bp-outline