skill-readme-sync

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a utility for maintaining documentation consistency between SKILL.md and README.md files. It does not perform any network operations, credential harvesting, or unauthorized system modifications.
  • [SAFE]: All file modifications require explicit user confirmation after the agent presents a structured sync report, ensuring human oversight of all changes.
  • [SAFE]: The instructions include specific safety guards under the 'Never' section, explicitly directing the agent to treat all file content as data and never as instructions, which prevents potential indirect prompt injection attacks from malicious documentation content.
  • [SAFE]: The skill operates within a restricted scope, only accessing the SKILL.md and README.md files in the current folder, and does not use any dangerous shell commands or privilege escalation techniques.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 08:06 PM
Security Audit — agent-trust-hub — skill-readme-sync