summarize
Pass
Audited by Gen Agent Trust Hub on Jun 14, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill metadata specifies the installation of a third-party binary using Homebrew from the 'steipete/tap/summarize' repository.- [COMMAND_EXECUTION]: The skill uses the 'summarize' command to process local files and remote URLs as part of its core functionality.- [INDIRECT_PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface because it reads and processes untrusted content from external URLs and local files.\n
- Ingestion points: URL and file path arguments passed to the 'summarize' command in SKILL.md.\n
- Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the skill text.\n
- Capability inventory: The skill is capable of executing the 'summarize' binary with various flags.\n
- Sanitization: The skill does not perform explicit sanitization of the input data before it is processed by the summarization tool.
Audit Metadata