brand-guidelines
Warn
Audited by Gen Agent Trust Hub on Apr 12, 2026
Risk Level: MEDIUMCOMMAND_EXECUTIONNO_CODE
Full Analysis
- [COMMAND_EXECUTION]: The SKILL.md file consists entirely of a directory traversal string:
../../../marketing-skill/brand-guidelines/SKILL.md. This is a classic path injection technique used to escape restricted directories and access files or configurations that should be off-limits to the skill. - [NO_CODE]: The skill contains no actual functional code, tools, or prompt instructions, functioning only as a file system traversal pointer.
Audit Metadata