rights-management

Pass

Audited by Gen Agent Trust Hub on Mar 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill operates as a high-level analytical framework for media rights management. It focuses on scanning project files for data models, licensing structures, and compliance workflows related to industry standards like DDEX, ISRC, and ISWC.
  • [COMMAND_EXECUTION]: The skill uses standard file system operations to read project data and write its findings to a documentation file (docs/rights-management-analysis.md). These actions are consistent with its stated purpose of performing a rights management audit.
  • [DATA_EXFILTRATION]: No network operations or data exfiltration patterns were detected. The skill's telemetry logging is restricted to local project memory directories if they already exist, which is a standard practice for tracking tool performance.
  • [PROMPT_INJECTION]: The instructions do not contain any bypass attempts or overrides of safety guidelines. The 'DO NOT' section reinforces safety by instructing the agent not to provide legal advice or fabricate royalty rates.
  • [REMOTE_CODE_EXECUTION]: There are no patterns of downloading or executing remote code. The skill relies entirely on the agent's internal reasoning and the data provided within the local project environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 23, 2026, 10:57 AM
Security Audit — agent-trust-hub — rights-management