security-bluebook-builder
Pass
Audited by Gen Agent Trust Hub on Jul 31, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary function is text generation based on user input and a static template. Analysis of the workflow confirms that no executable scripts or system commands are present.
- [DATA_EXPOSURE]: Although the skill collects information about data handling and authentication methods, it includes explicit guardrails (Step 3) forbidding the inclusion of secrets, tokens, or internal credentials in the resulting document.
- [PROMPT_INJECTION]: The skill processes untrusted user input to generate documentation, which is a surface for indirect prompt injection. However, since the skill's capabilities are restricted to text output and do not include tool usage or shell execution, this carries no functional security risk to the environment.
Audit Metadata