skills/terrylica/cc-skills/format/Gen Agent Trust Hub

format

Pass

Audited by Gen Agent Trust Hub on Feb 27, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill requires the Bash tool to execute live parsing examples on user-provided .cast files. This is a functional requirement for demonstrating how to parse the NDJSON format using tools like jq.
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection as it processes untrusted data from external files.
  • Ingestion points: User-provided files via the -f/--file argument in SKILL.md.
  • Boundary markers: None identified; the skill does not explicitly instruct the agent to ignore instructions embedded within the .cast files.
  • Capability inventory: Uses the Bash tool to run parsing commands.
  • Sanitization: No explicit sanitization or validation of the input file's content or structure is mentioned beyond a troubleshooting note for invalid NDJSON.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 27, 2026, 05:27 PM