webnovel-init
Pass
Audited by Gen Agent Trust Hub on Mar 11, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the Bash tool to execute a local initialization script (webnovel.py) included in the skill's package. This script handles the creation of project directories and state files based on user-provided parameters.\n- [EXTERNAL_DOWNLOADS]: The skill utilizes WebSearch and WebFetch to gather real-time market trends and platform-specific guidelines from the internet. This is a core feature of the skill's market-aware initialization process and follows the intended functionality.\n- [PROMPT_INJECTION]: The skill was evaluated for indirect prompt injection risks since it processes external data from web searches. However, the data is used for informational purposes (market analysis) and the project root path is sanitized by the script, which mitigates typical injection vectors.
Audit Metadata