color-expert

Fail

Audited by Gen Agent Trust Hub on Mar 25, 2026

Risk Level: CRITICALDATA_EXFILTRATIONNO_CODE
Full Analysis
  • [DATA_EXFILTRATION]: Automated scanners identified 'colorwell.org' as a blacklisted domain. This URL appears as a citation within the scraped reference material from 'huevaluechroma.com'. Although the author defends this domain in 'SECURITY.md' as a legitimate educational resource, the blacklist status represents a potential risk for the agent's browsing operations.
  • [DATA_EXFILTRATION]: The repository contains over 140 markdown files with hundreds of links to third-party domains (e.g., petertdonahue.com, jinjermarkley.com, focalpaint.com). This provides a large surface for potential data exfiltration or ingestion of untrusted content if the agent is tasked with fetching information from these unverified external sources.
  • [NO_CODE]: Technical audit of the 154 files confirms that the skill is purely declarative and knowledge-based. No executable shell scripts, Python code, Node.js packages, or binary files were detected. Minified JavaScript fragments found in files like 'references/contemporary/colorandcontrast/accessibility.md' are static text citations and cannot be executed by the skill environment.
Recommendations
  • Contains 4 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Mar 25, 2026, 07:38 PM