color-theory-palette-harmony-expert

Pass

Audited by Gen Agent Trust Hub on Mar 6, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill recommends the installation of several standard, well-known Python packages for data science and image processing, including colormath, opencv-python, numpy, scipy, scikit-image, scikit-learn, pot, and hnswlib. These are legitimate libraries widely used in the research community.\n- [EXTERNAL_DOWNLOADS]: It points to established industry resources and tools such as oklch.com and technical articles from evilmartians.com.\n- [COMMAND_EXECUTION]: The skill is authorized to use Bash and provides the agent with static, mathematically sound Python code templates to implement color harmony algorithms like Sinkhorn EMD and Maximal Marginal Relevance.\n- [PROMPT_INJECTION]: The skill's use of Firecrawl and WebFetch for research creates an indirect prompt injection surface.\n
  • Ingestion points: External web content retrieved through mcp__firecrawl__firecrawl_search and WebFetch.\n
  • Boundary markers: The skill does not define specific delimiters or instructions to ignore commands within ingested web data.\n
  • Capability inventory: The agent has access to Bash execution and file modification tools (Write, Edit).\n
  • Sanitization: No explicit sanitization or validation of the fetched external data is described in the provided reference materials.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 6, 2026, 01:49 AM