hackathon-team-formation
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security vulnerabilities were detected. The skill serves as a procedural guide for hackathon logistics, utilizing purely instructional text and evaluation scenarios.
- [REMOTE_CODE_EXECUTION]: The skill does not utilize any tools for downloading or executing external code. All sibling skill references (e.g., samber/dev-event-organizer-skills) are within the same vendor's scope.
- [DATA_EXFILTRATION]: There are no network requests, API calls, or attempts to access sensitive system files or environment variables.
- [OBFUSCATION]: A thorough scan for Base64 encoding, zero-width characters, homoglyphs, and hidden text patterns yielded no results.
- [PROMPT_INJECTION]: The skill does not contain instructions that attempt to override the AI's core safety guidelines or ignore prior system prompts.
- [INDIRECT_PROMPT_INJECTION]: While the skill ingests untrusted user data via an interview process, it lacks dangerous capabilities such as file writing, network access, or shell execution.
- Ingestion points: User answers during the 'Interview' section.
- Boundary markers: The workflow requires step-by-step validation and explicit approval from the user.
- Capability inventory: No subprocess calls, network operations, or file-write capabilities were found.
- Sanitization: Not applicable as there are no executable downstream sinks.
Audit Metadata