heraclitus-perspective

Pass

Audited by Gen Agent Trust Hub on Aug 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill contains no executable code, scripts, or binaries. Its functionality is entirely defined by natural language instructions and philosophical content.
  • [SAFE]: No sensitive file paths, environment variables, or hardcoded credentials were detected. The skill only references its own local documentation and example files.
  • [SAFE]: The installation command npx skills add nuwa-skills/heraclitus-skill targets the official repository of the skill's author ('nuwa-skills'), which is consistent with standard installation practices for this platform.
  • [PROMPT_INJECTION]: The instructions are designed to shape the AI's persona and do not contain directives to bypass safety filters, ignore system instructions, or extract sensitive internal prompts.
  • [DATA_EXFILTRATION]: No network operations or commands to transmit data to external servers were found.
  • [INDIRECT_PROMPT_INJECTION]: While the skill processes user-supplied questions to provide philosophical answers, it lacks the capabilities (such as file-writing, network access, or command execution) that would make it vulnerable to exploitation via indirect injection. The risk is assessed as safe due to the lack of exploitable tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 4, 2026, 01:28 AM
Security Audit — agent-trust-hub — heraclitus-perspective