fortune-teller
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a prompt template for code analysis using a theatrical persona. It does not request any dangerous permissions, execute shell commands, or perform network operations. All instructions are focused on formatting and grounding analysis in provided code diffs.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external code diffs, which constitutes an ingestion point for untrusted data. However, the skill does not possess any exploitable capabilities (such as file writing, network access, or command execution tools), meaning that even if malicious instructions were embedded in the code being reviewed, the agent has no means to execute them. No specific boundary markers or sanitization logic are defined, but the lack of active tools renders the surface non-exploitable.
Audit Metadata