NYC

asc-metadata-sync

Pass

Audited by Gen Agent Trust Hub on Feb 19, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [NO_CODE] (SAFE): The skill consists entirely of documentation and example shell commands for the 'asc' CLI tool. No source code or scripts are included within the skill package.
  • [INDIRECT_PROMPT_INJECTION] (LOW): The skill defines a surface for processing external data from App Store Connect and local files.
  • Ingestion points: Data is ingested via 'asc localizations download' and reading local '.strings' files.
  • Boundary markers: Not explicitly defined in the prompt templates.
  • Capability inventory: The skill suggests commands to upload data back to App Store Connect ('asc localizations upload', 'asc migrate import').
  • Sanitization: The skill recommends using 'asc migrate validate' to verify metadata against character limits before submission.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 19, 2026, 02:17 AM