competition-cloud-metadata-path

Pass

Audited by Gen Agent Trust Hub on Jul 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is purely instructional and provides a framework for analyzing Capture The Flag (CTF) challenges. It does not include any scripts, dependencies, or commands that interact with the host system or external networks.
  • [DATA_EXPOSURE]: While the skill discusses credentials such as link-local tokens and instance identity documents, it does so in a conceptual and educational context. There are no hardcoded secrets, and it does not provide mechanisms to exfiltrate data.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process data about security vulnerabilities. While this data is technically untrusted input, the skill lacks any dangerous capabilities (such as shell execution or file system writes) that could be exploited by embedded instructions in the processed data.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 17, 2026, 09:25 AM
Security Audit — agent-trust-hub — competition-cloud-metadata-path