temporal-brand
Pass
Audited by Gen Agent Trust Hub on Feb 22, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS] (SAFE): The script
scripts/refresh-assets.shdownloads SVG image files fromimages.ctfassets.net. This is a standard Contentful CDN used for asset delivery. The script performs directed downloads of static assets necessary for the skill's primary branding purpose and does not execute the downloaded content. - [COMMAND_EXECUTION] (SAFE): The asset refresh script utilizes basic shell commands (
mkdir,curl,ls) to manage local directories and fetch files. All commands are static and operate within the skill's local directory structure. - [PROMPT_INJECTION] (SAFE): The instructions in
SKILL.mdare purely informative, providing brand rules and design constraints. There are no attempts to override agent safety filters or bypass system instructions.
Audit Metadata