writing-skills
Pass
Audited by Gen Agent Trust Hub on Mar 23, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill includes a utility script
render-graphs.jsthat executes system commands (dotandwhich) via the Node.jschild_processmodule to generate SVG diagrams from DOT blocks in documentation. This is an intended local development tool for visualization.- [PROMPT_INJECTION]: The documentation provides guidelines on using imperative framing and 'authority' principles (e.g., 'YOU MUST', 'Delete means delete') within skills to enforce compliance with engineering standards. These patterns are explicitly documented as a reliability framework to prevent agent rationalization during task execution rather than as a means to bypass safety protocols.
Audit Metadata