authoring-signals-scouts

Pass

Audited by Gen Agent Trust Hub on Jun 26, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security vulnerabilities were detected in the skill instructions or reference files.
  • [PROMPT_INJECTION]: The skill includes explicit defensive instructions to mitigate indirect prompt injection when processing untrusted external data (e.g., from Git repositories, Slack channels, or social feeds), advising developers to treat such content as non-executable evidence.
  • [COMMAND_EXECUTION]: Mentions the use of standard development tools such as git, curl, and node within a sandboxed environment for legitimate data retrieval and analysis tasks.
  • [DATA_EXFILTRATION]: Provides clear guidelines for identifying and redacting Personal Identifiable Information (PII) in free-text data sources to ensure privacy and prevent accidental exposure.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 26, 2026, 10:10 AM
Security Audit — agent-trust-hub — authoring-signals-scouts