websocket-client-creator

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION] (LOW): Surface for Indirect Prompt Injection detected via tools interacting with untrusted data.
  • Ingestion points: User-provided WebSocket URLs and protocol definitions.
  • Boundary markers: Absent in the skill instructions.
  • Capability inventory: The skill permits use of Bash, Write, Edit, and Grep tools (SKILL.md).
  • Sanitization: No explicit input validation or escaping logic is defined for processing external endpoints.
  • [NO_CODE] (SAFE): No executable code, scripts, or package dependencies were provided in the skill files for analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:29 PM