skill-crawler
Pass
Audited by Gen Agent Trust Hub on Mar 10, 2026
Risk Level: SAFENO_CODEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious patterns, obfuscated content, or security vulnerabilities were identified in the skill's metadata or instructions.
- [NO_CODE]: The skill consists exclusively of Markdown documentation and reference files; it does not include any executable scripts, binaries, or automated data processing functions.
- [EXTERNAL_DOWNLOADS]: The skill provides instructions to install related components from the author's own GitHub repository (github.com/benjaminwestern/google-engineer-skills). These are identified as legitimate vendor-owned resources for the documented workflow.
- [PROMPT_INJECTION]: Although the skill describes a workflow that involves ingesting documentation from external websites, the skill itself does not automate this processing or execute commands based on untrusted data, thereby eliminating active indirect prompt injection risks.
Audit Metadata