skills/tituskirch/skills/handoff/Gen Agent Trust Hub

handoff

Pass

Audited by Gen Agent Trust Hub on Sep 8, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill instructions and associated shell scripts were analyzed and no malicious code, obfuscation, or unauthorized network behaviors were identified.
  • [DATA_EXFILTRATION]: The skill explicitly forbids the inclusion of sensitive information such as tokens, keys, and credentials in handoff files, directing agents to reference secure locations instead of committing them to version control.
  • [INDIRECT_PROMPT_INJECTION]: The skill includes a detailed 'Author authority' framework that ensures only content from authorized users (with write/admin permissions) and trusted bots is treated as instructions, mitigating the risk of malicious commands injected through third-party collaborative documents.
  • [EXTERNAL_DOWNLOADS]: References to the author's GitHub repository ('TitusKirch/skills') for schema verification are neutrally documented and limited to reading non-executable configuration metadata.
  • [COMMAND_EXECUTION]: Local shell command usage is limited to standard, low-privilege Git operations and file system discovery tools (ls, sed, sort) used strictly for managing document IDs.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 8, 2026, 05:54 PM
Security Audit — agent-trust-hub — handoff