takt-analyzer
Pass
Audited by Gen Agent Trust Hub on Apr 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security vulnerabilities were identified in the analysis of the 214 files provided.
- [SAFE]: The skill's primary purpose is code and workflow analysis. It uses standard tools such as
Read,Glob,Grep,WebSearch, andWebFetchto perform these functions. All tool usage is consistent with its stated intent. - [SAFE]: No hardcoded credentials or sensitive data exposure were detected. Documentation and configuration files use standard placeholders (e.g.,
sk-ant-...,sk-...) for demonstration purposes. - [SAFE]: The skill does not contain any obfuscated code, instructions, or URLs. No Base64-encoded commands or hidden character techniques were found.
- [SAFE]: No unauthorized or suspicious network activity was identified. Network access is restricted by provider-specific options and is intended for legitimate research and API interaction tasks.
- [SAFE]: The skill includes a meta-analysis capability for security auditing itself, providing detailed instructions for agents to detect vulnerabilities like SQL injection and credential exposure in the code they review.
- [SAFE]: While the skill ingests external data (TAKT workflows and logs), it follows a structured analysis framework that minimizes risks associated with indirect prompt injection. The ingest-and-analyze behavior is essential to its primary function and is implemented using descriptive, rather than prescriptive, parsing patterns.
Audit Metadata