review-security

Pass

Audited by Gen Agent Trust Hub on May 9, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: Analysis of the skill instructions found no attempts to bypass safety filters or perform unauthorized actions.- [SAFE]: No network operations, sensitive file path access, or credential harvesting patterns were detected.- [SAFE]: The skill does not define external dependencies or execute remote scripts.- [PROMPT_INJECTION]: While the skill processes untrusted source code, it lacks the execution capabilities (e.g., shell access, network, or file writes) necessary to facilitate an effective indirect prompt injection attack. Evidence check: Ingestion points (SKILL.md code-scope input); Boundary markers (absent); Capability inventory (none, text-only output); Sanitization (absent).
Audit Metadata
Risk Level
SAFE
Analyzed
May 9, 2026, 11:15 AM