recovery-app-onboarding

Pass

Audited by Gen Agent Trust Hub on Mar 5, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No instructions attempting to bypass safety filters or override agent behavior were found. The content focuses strictly on user experience design principles.- [DATA_EXFILTRATION]: No network operations, sensitive file access, or hardcoded credentials were detected. The skill does not attempt to move data to external domains.- [EXTERNAL_DOWNLOADS]: The skill does not download external packages or remote scripts. All referenced assets and scripts are local placeholders.- [REMOTE_CODE_EXECUTION]: There are no patterns involving the execution of remote scripts via tools like curl or wget. All code snippets provided are static UI templates.- [COMMAND_EXECUTION]: While the skill permits the Bash tool, it does not contain any scripts that execute dangerous system commands or modify the environment.- [DYNAMIC_EXECUTION]: No usage of eval(), exec(), or other functions for dynamic code assembly or runtime compilation was observed.- [OBFUSCATION]: The content is clear and readable with no hidden characters, Base64 encoding, or homoglyph attacks.- [INDIRECT_PROMPT_INJECTION]: The skill provides UI logic for data input but does not ingest or process untrusted external data in a way that could influence agent logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 5, 2026, 08:22 PM