skills/talkstream/ru-text/ru-score/Gen Agent Trust Hub

ru-score

Pass

Audited by Gen Agent Trust Hub on Aug 29, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted user-supplied text to perform quality scoring, which creates a surface for indirect instructions to influence the agent.
  • Ingestion points: User input is ingested via the $ARGUMENTS variable as described in SKILL.md.
  • Boundary markers: No specific delimiters or boundary markers are defined to isolate user-provided text from the skill's scoring instructions.
  • Capability inventory: The skill environment is restricted to Read, Grep, and Glob tools. It explicitly disallows dangerous tools such as Write, Edit, Bash, and PowerShell.
  • Sanitization: The instructions do not specify any sanitization, filtering, or escaping of the user-provided text before it is evaluated by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 29, 2026, 08:35 AM
Security Audit — agent-trust-hub — ru-score