skills/falkicon/mechanic/s-research/Gen Agent Trust Hub

s-research

Warn

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • EXTERNAL_DOWNLOADS (MEDIUM): File references/blizzard-ui.md contains commands to update local source mirrors using git pull from https://github.com/Gethe/wow-ui-source. This repository is not on the list of trusted external sources.\n- COMMAND_EXECUTION (SAFE): Utilizes ripgrep and the mech CLI tool for searching local API definitions and Blizzard source code. These are legitimate tools for the skill's purpose.\n- PROMPT_INJECTION (LOW): Indirect prompt injection surface through processed source files. 1. Ingestion points: Files in the _dev_/ directory accessed via rg. 2. Boundary markers: None identified in instructions. 3. Capability inventory: mech call api.search, mech call lua.queue (for in-game execution), and shell execution via rg. 4. Sanitization: None detected for external data ingested.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 17, 2026, 06:49 PM