skill-seekers

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process content from external, untrusted sources including documentation websites, GitHub repositories, and PDF files.
  • Ingestion points: Processes content from arbitrary documentation websites, GitHub repositories, and PDF files.
  • Boundary markers: The instructions do not specify the use of delimiters or boundary markers to prevent the agent from executing instructions potentially hidden within the processed external data.
  • Capability inventory: This SKILL.md file contains only instructions and no executable code, shell commands, or network operations.
  • Sanitization: No mechanisms for sanitizing, validating, or filtering the ingested external content are described.
  • [NO_CODE]: The analyzed skill consists exclusively of markdown documentation and metadata. It contains no scripts, binary executables, or automated tool invocations within the provided file.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 12:12 PM
Security Audit — agent-trust-hub — skill-seekers