ask-bug-finder
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOW
Full Analysis
- PROMPT_INJECTION (SAFE): The instructions in SKILL.md and README.md are purely procedural and do not contain patterns intended to bypass AI safety filters or hijack agent behavior.
- DATA_EXFILTRATION (SAFE): No commands for accessing sensitive files (e.g., SSH keys, credentials) or performing unauthorized network requests were found.
- REMOTE_CODE_EXECUTION (SAFE): The included script 'scripts/validate.py' is a benign placeholder. No patterns for downloading and executing remote code were identified.
- OBFUSCATION (SAFE): All content is provided in cleartext. No Base64 encoding, zero-width characters, or homoglyph-based obfuscation was detected.
- INDIRECT PROMPT INJECTION (LOW): While the skill is designed to process external data such as code and error logs, it functions as an internal reasoning guide (Tier: LOW) and does not automate high-privilege actions based on that data.
Audit Metadata