grill-me

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is composed entirely of Markdown instructions and JSON evaluation cases. It does not include any executable scripts, shell commands, or binary assets.
  • [DATA_EXPOSURE]: Although the instructions encourage the agent to inspect the local repository for context (e.g., reading code or documentation), there are no mechanisms for data exfiltration or access to sensitive credential files like .env or .ssh.
  • [COMMAND_EXECUTION]: The skill configuration explicitly includes disable-model-invocation: true, which prevents the model from calling external tools or executing shell commands within this context.
  • [PROMPT_INJECTION]: The instructions are well-structured and focus on maintaining a specific 'interviewer' persona. There are no attempts to bypass safety filters, extract system prompts, or override agent constraints.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 11:52 AM
Security Audit — agent-trust-hub — grill-me