qa-assistant

Pass

Audited by Gen Agent Trust Hub on Apr 7, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill follows the principle of least privilege by explicitly restricting its actions to read-only operations and prohibiting any file or resource modifications.
  • [SAFE]: No malicious patterns such as prompt injection, obfuscation, or data exfiltration were detected in the instructions or metadata.
  • [SAFE]: The skill uses standard retrieval tools (read_file, grep_search, semantic_search) to analyze local project data and does not involve remote code execution or external network operations.
  • [SAFE]: While the skill retrieves content from potentially untrusted project files (indirect prompt injection surface), its strictly limited capability set prevents any harmful actions beyond providing summaries and suggestions.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 7, 2026, 11:35 AM