skill-vetter
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill provides commands to fetch repository metadata and file contents from GitHub and GitHub User Content. These operations target well-known services and are used for the legitimate purpose of retrieving code for security inspection.
- [INDIRECT_PROMPT_INJECTION]: As a security tool, this skill is designed to ingest and analyze untrusted skill code from external sources. This creates a surface where the agent might encounter malicious instructions embedded in the reviewed content.
- Ingestion points:
SKILL.md(instructions to read external skill files and fetch content viacurl). - Boundary markers: The protocol does not define specific delimiters for the external content being analyzed.
- Capability inventory:
curlfor network retrieval andjqfor parsing metadata. No automated execution of the retrieved code is performed. - Sanitization: The skill's primary function is the detection and manual/reasoned analysis of potentially malicious content before any installation or execution occurs.
Audit Metadata