content-growth-studio

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists exclusively of instructional Markdown and YAML configuration files. There are no executable scripts (e.g., Python, JavaScript), binary files, or automated shell commands present.
  • [SAFE]: Analysis for obfuscation (Base64, hex encoding, zero-width characters) and metadata poisoning yielded no findings. The content is transparent and consistent with its stated purpose of content growth and management.
  • [SAFE]: The skill does not perform any network operations or access sensitive system files. While it references external URLs as potential source artifacts, it provides instructions for the agent to request transcripts or excerpts if links are inaccessible, rather than executing dangerous retrieval commands.
  • [SAFE]: An indirect prompt injection surface exists because the skill processes untrusted external data (transcripts, URLs, user notes). However, the skill lacks high-risk capabilities such as file system writing, subprocess execution, or administrative privileges, rendering this surface benign in the context of this specific skill.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 08:45 AM