skill-creator

Pass

Audited by Gen Agent Trust Hub on May 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a legitimate developer tool for scaffolding and managing agent skill projects.
  • [COMMAND_EXECUTION]: The skill includes Python scripts (init_skill.py, package_skill.py, quick_validate.py) that perform standard file system operations. These include directory creation, file writing for templates, and ZIP archive creation. These actions are directly aligned with the stated purpose of a skill development utility.
  • [EXTERNAL_DOWNLOADS]: The skill does not perform any network operations, external downloads, or remote code execution.
  • [CREDENTIALS_UNSAFE]: No hardcoded secrets, API keys, or attempts to access sensitive credential stores (e.g., .ssh, .aws) were detected.
  • [PROMPT_INJECTION]: The instructions in SKILL.md and reference files focus on development best practices and do not contain attempts to override agent safety protocols or bypass system constraints.
Audit Metadata
Risk Level
SAFE
Analyzed
May 27, 2026, 02:35 PM
Security Audit — agent-trust-hub — skill-creator