heraclitus-perspective
Pass
Audited by Gen Agent Trust Hub on Aug 4, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill contains no executable code, scripts, or binaries. Its functionality is entirely defined by natural language instructions and philosophical content.
- [SAFE]: No sensitive file paths, environment variables, or hardcoded credentials were detected. The skill only references its own local documentation and example files.
- [SAFE]: The installation command
npx skills add nuwa-skills/heraclitus-skilltargets the official repository of the skill's author ('nuwa-skills'), which is consistent with standard installation practices for this platform. - [PROMPT_INJECTION]: The instructions are designed to shape the AI's persona and do not contain directives to bypass safety filters, ignore system instructions, or extract sensitive internal prompts.
- [DATA_EXFILTRATION]: No network operations or commands to transmit data to external servers were found.
- [INDIRECT_PROMPT_INJECTION]: While the skill processes user-supplied questions to provide philosophical answers, it lacks the capabilities (such as file-writing, network access, or command execution) that would make it vulnerable to exploitation via indirect injection. The risk is assessed as safe due to the lack of exploitable tools.
Audit Metadata