rag-systems
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOW
Full Analysis
- SAFE (SAFE): No malicious patterns or security vulnerabilities were identified in the skill files or metadata.\n- Secure Scripting: The
scripts/validate.pyfile usesyaml.safe_load()for configuration parsing, which correctly avoids unsafe deserialization of untrusted data.\n- Safety Guidance: The documentation inSKILL.mdincludes troubleshooting steps that recommend adding safety constraints (e.g., 'only use context' prompts) to the RAG pipeline, demonstrating an awareness of common AI security risks.\n- Capability Inventory: The skill is primarily instructional and provides a local validation utility; it does not contain automated scripts that execute remote code or perform network operations outside of the provided educational examples.
Audit Metadata