skills/kv0906/pm-kit/explain/Gen Agent Trust Hub

explain

Pass

Audited by Gen Agent Trust Hub on Apr 6, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious behavior or suspicious code patterns were detected in the skill instructions. The skill performs as advertised by reverse-engineering complex concepts into natural language.
  • [PROMPT_INJECTION]: The skill includes an indirect prompt injection surface because it processes untrusted user input and possesses file-writing capabilities. (1) Ingestion points: User input via the /explain command or pasted content in SKILL.md. (2) Boundary markers: Absent; no specific delimiters or warnings are used to isolate user data from the core instructions. (3) Capability inventory: The skill can write output to the docs/ directory when the explanation exceeds 20 lines. (4) Sanitization: No sanitization or validation of the input content is specified. This is a common and low-risk surface for this type of agent skill.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 6, 2026, 12:50 PM