authoring-signals-scouts
Pass
Audited by Gen Agent Trust Hub on Jun 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security vulnerabilities were detected in the skill instructions or reference files.
- [PROMPT_INJECTION]: The skill includes explicit defensive instructions to mitigate indirect prompt injection when processing untrusted external data (e.g., from Git repositories, Slack channels, or social feeds), advising developers to treat such content as non-executable evidence.
- [COMMAND_EXECUTION]: Mentions the use of standard development tools such as
git,curl, andnodewithin a sandboxed environment for legitimate data retrieval and analysis tasks. - [DATA_EXFILTRATION]: Provides clear guidelines for identifying and redacting Personal Identifiable Information (PII) in free-text data sources to ensure privacy and prevent accidental exposure.
Audit Metadata