gstack-style-doc
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill logic in SKILL.md consists entirely of natural language instructions and examples for text generation. It does not utilize any tools or execute shell commands.
- [INDIRECT_PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection as it processes user input to generate documentation, but it lacks the capabilities (network, file-system, or execution) to be exploited.
- [EXTERNAL_DOWNLOADS]: The workspace includes a review utility that fetches a well-known library (SheetJS) from a reputable CDN using Subresource Integrity (SRI) hashes, which is a safe and standard development practice.
Audit Metadata