hackathon-team-formation

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security vulnerabilities were detected. The skill serves as a procedural guide for hackathon logistics, utilizing purely instructional text and evaluation scenarios.
  • [REMOTE_CODE_EXECUTION]: The skill does not utilize any tools for downloading or executing external code. All sibling skill references (e.g., samber/dev-event-organizer-skills) are within the same vendor's scope.
  • [DATA_EXFILTRATION]: There are no network requests, API calls, or attempts to access sensitive system files or environment variables.
  • [OBFUSCATION]: A thorough scan for Base64 encoding, zero-width characters, homoglyphs, and hidden text patterns yielded no results.
  • [PROMPT_INJECTION]: The skill does not contain instructions that attempt to override the AI's core safety guidelines or ignore prior system prompts.
  • [INDIRECT_PROMPT_INJECTION]: While the skill ingests untrusted user data via an interview process, it lacks dangerous capabilities such as file writing, network access, or shell execution.
  • Ingestion points: User answers during the 'Interview' section.
  • Boundary markers: The workflow requires step-by-step validation and explicit approval from the user.
  • Capability inventory: No subprocess calls, network operations, or file-write capabilities were found.
  • Sanitization: Not applicable as there are no executable downstream sinks.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 09:14 PM
Security Audit — agent-trust-hub — hackathon-team-formation