skill-creator

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • SAFE (SAFE): No security issues detected across all analyzed threat categories.\n- [Dynamic Execution] (SAFE): The quick_validate.py script correctly uses yaml.safe_load(), which is a security best practice that prevents arbitrary code execution during YAML parsing.\n- [Data Exposure & Exfiltration] (SAFE): No hardcoded credentials, sensitive file access (e.g., SSH keys), or network calls were identified. The scripts strictly perform local file operations related to skill packaging and validation.\n- [Prompt Injection] (SAFE): The markdown reference files (output-patterns.md, workflows.md) contain benign structural guidance and workflow examples that do not attempt to override agent instructions or bypass safety guardrails.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:31 PM