asc-app-shots-prompt

Pass

Audited by Gen Agent Trust Hub on Apr 10, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's behavior is consistent with its stated purpose of helping users format prompts for App Store marketing. No malicious patterns or behaviors were identified.
  • [COMMAND_EXECUTION]: The skill provides users with bash command templates for the 'asc' CLI tool. These are provided as markdown text for manual execution by the user, and the skill itself does not have the capability to run these commands automatically.
  • [DATA_EXFILTRATION]: No network access or exfiltration patterns were detected. The skill operates entirely on text and local screenshot analysis.
  • [PROMPT_INJECTION]: The skill ingests text from user-provided screenshots to populate its prompt template. While this is an ingestion surface for indirect prompt injection, the skill lacks any dangerous capabilities (like shell execution or network requests) to exploit such an injection. Ingestion point: User screenshot (SKILL.md Step 1); Boundary markers: Absent; Capability inventory: None; Sanitization: Absent.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 10, 2026, 02:26 PM