skill-creator
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- SAFE (SAFE): No security issues detected across all analyzed threat categories.\n- [Dynamic Execution] (SAFE): The
quick_validate.pyscript correctly usesyaml.safe_load(), which is a security best practice that prevents arbitrary code execution during YAML parsing.\n- [Data Exposure & Exfiltration] (SAFE): No hardcoded credentials, sensitive file access (e.g., SSH keys), or network calls were identified. The scripts strictly perform local file operations related to skill packaging and validation.\n- [Prompt Injection] (SAFE): The markdown reference files (output-patterns.md,workflows.md) contain benign structural guidance and workflow examples that do not attempt to override agent instructions or bypass safety guardrails.
Audit Metadata