duck-design
Pass
Audited by Gen Agent Trust Hub on Jul 18, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill is composed entirely of Markdown-based instructions and design guidelines. It does not include any source code, shell scripts, or executable files.
- [PROMPT_INJECTION]: The instructions incorporate explicit guardrails that prioritize security controls and trust-boundary validation, preventing the agent from compromising safety for the sake of architectural simplicity.
- [DATA_EXFILTRATION]: No mechanisms for network communication or access to sensitive system files (such as credentials or environment variables) were identified.
- [REMOTE_CODE_EXECUTION]: The skill does not define or reference any external packages, remote scripts, or dynamic code execution patterns.
Audit Metadata