architecture
Pass
Audited by Gen Agent Trust Hub on Aug 18, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: No evidence of instructions designed to bypass safety filters or ignore system-level constraints was found.
- [DATA_EXPOSURE_AND_EXFILTRATION]: No commands for exfiltrating data or accessing sensitive environment variables or files were detected.
- [OBFUSCATION]: The skill content is clear and uses no encoding techniques to hide malicious behavior.
- [UNVERIFIABLE_DEPENDENCIES_AND_REMOTE_CODE_EXECUTION]: No remote script downloads or unverified package installations are present.
- [PRIVILEGE_ESCALATION]: No privilege-escalation attempts, such as use of sudo or modification of file permissions, were identified.
- [PERSISTENCE_MECHANISMS]: No attempts to establish persistent access via shell profiles or scheduled tasks were found.
- [METADATA_POISONING]: Metadata fields are accurate and reflect the skill's architectural purpose.
- [INDIRECT_PROMPT_INJECTION]: The skill ingests codebase files for analysis as part of its primary function, which does not present an unusual security surface beyond its intended use-case.
- [TIME_DELAYED_OR_CONDITIONAL_ATTACKS]: No malicious logic gated by time or environment-specific conditions was identified.
- [DYNAMIC_EXECUTION]: No dynamic code generation, runtime compilation, or unsafe deserialization was found.
- [DYNAMIC_CONTEXT_INJECTION]: The skill does not utilize dynamic shell execution placeholders in its markdown files.
Audit Metadata