skills/fasalzein/wiki-forge/forge/Gen Agent Trust Hub

forge

Pass

Audited by Gen Agent Trust Hub on Apr 19, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill relies on a local wiki CLI tool and the bun runtime to perform repository management tasks. It executes commands such as wiki forge plan, wiki sync, and wiki protocol audit. It also instructs users to run bun run sync:local to install or refresh the CLI and associated repo-owned skills.
  • [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface by ingesting content from repository-local files. Ingestion points: Reads AGENTS.md, CLAUDE.md, and project documentation files (e.g., projects/<project>/decisions.md). Boundary markers: Absent. No delimiters or specific instructions are provided to ignore embedded commands within the ingested files. Capability inventory: Broad command execution capabilities via the wiki CLI and bun runner. Sanitization: No sanitization or validation of the content from ingested files is mentioned.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 19, 2026, 02:37 PM