architecture

Pass

Audited by Gen Agent Trust Hub on Aug 18, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No evidence of instructions designed to bypass safety filters or ignore system-level constraints was found.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: No commands for exfiltrating data or accessing sensitive environment variables or files were detected.
  • [OBFUSCATION]: The skill content is clear and uses no encoding techniques to hide malicious behavior.
  • [UNVERIFIABLE_DEPENDENCIES_AND_REMOTE_CODE_EXECUTION]: No remote script downloads or unverified package installations are present.
  • [PRIVILEGE_ESCALATION]: No privilege-escalation attempts, such as use of sudo or modification of file permissions, were identified.
  • [PERSISTENCE_MECHANISMS]: No attempts to establish persistent access via shell profiles or scheduled tasks were found.
  • [METADATA_POISONING]: Metadata fields are accurate and reflect the skill's architectural purpose.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests codebase files for analysis as part of its primary function, which does not present an unusual security surface beyond its intended use-case.
  • [TIME_DELAYED_OR_CONDITIONAL_ATTACKS]: No malicious logic gated by time or environment-specific conditions was identified.
  • [DYNAMIC_EXECUTION]: No dynamic code generation, runtime compilation, or unsafe deserialization was found.
  • [DYNAMIC_CONTEXT_INJECTION]: The skill does not utilize dynamic shell execution placeholders in its markdown files.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 18, 2026, 12:28 PM
Security Audit — agent-trust-hub — architecture