flask-ml-api-creator

Pass

Audited by Gen Agent Trust Hub on Feb 18, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • Prompt Injection (SAFE): No patterns were found that attempt to bypass safety guidelines or override agent instructions.
  • Data Exposure & Exfiltration (SAFE): No hardcoded credentials, sensitive file paths, or unauthorized network operations were identified.
  • Unverifiable Dependencies & Remote Code Execution (SAFE): No external package installations or remote script executions (e.g., curl piped to bash) are present.
  • Indirect Prompt Injection (LOW): The skill identifies user requests as data ingestion points for generating Flask code (SKILL.md) and possesses potentially dangerous tools like Bash and Write, but it lacks explicit boundary markers or sanitization logic to handle adversarial input.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 18, 2026, 03:04 PM