skill-tester
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes validation scripts including
run-tests.sh,quick_validate.py, andvalidate-agent-plugin.pyto check skill structure and specification compliance. - [EXTERNAL_DOWNLOADS]: Utilizes
uv runto dynamically load standard packages (jsonschemaandPyYAML) at specific versions from the official registry to perform manifest validation. - [INDIRECT_PROMPT_INJECTION]: The skill possesses a surface for indirect injection as its primary function is to ingest and process data from other skills in the repository.
- Ingestion points: Reads
SKILL.mdfrontmatter, instruction files (AGENTS.md,CLAUDE.md), and script contents from theskills/directory. - Boundary markers: None explicitly defined in the parsing logic; uses standard shell utilities and Python scripts to evaluate structure.
- Capability inventory: Includes file system read access, shell command execution for syntax checking (
bash -n), and metadata extraction. - Sanitization: Employs static analysis tools and exit-code validation to verify the integrity of external skill content.
Audit Metadata