skills/diodeinc/pcb/reference-design/Gen Agent Trust Hub

reference-design

Pass

Audited by Gen Agent Trust Hub on Mar 17, 2026

Risk Level: SAFENO_CODECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [SAFE]: The skill consists solely of markdown documentation (SKILL.md). No executable files, scripts, or automated configuration files are present in the package, which eliminates direct technical risks such as remote code execution or unauthorized system access.\n- [COMMAND_EXECUTION]: The workflow documentation provides instructions for using a specialized command-line tool (pcb) for tasks such as component searching, building project modules, and formatting code. These commands are legitimate and intended for the skill's primary function of electronic design.\n- [EXTERNAL_DOWNLOADS]: The README template within the documentation references external resources located at github.com/diodeinc/registry. These are identified as vendor-owned resources for the author 'diodeinc' and represent standard usage of a package registry within this tool's ecosystem.\n- [PROMPT_INJECTION]: The workflow involves an indirect prompt injection surface as it instructs the agent to process external data from datasheets using the datasheet-reader skill. However, the skill itself provides only high-level instructions and does not contain the logic for data ingestion or processing. Ingestion points: External datasheet markdown processed in Step 2 of the workflow. Boundary markers: None specified in the instructions. Capability inventory: The skill allows interaction with the pcb CLI for local file and registry operations. Sanitization: None described; relies on the agent's internal safety filters.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 17, 2026, 10:00 PM