ruzzy
Audited by ZeroLeaks on Apr 15, 2026
The SKILL.md carries a transparency concern due to an obfuscated or encoded execution path, which weakens pre-use reviewability and makes it harder to fully assess what the skill does before loading it. On the positive side, the skill keeps data and instruction boundaries reasonably separate and does not push the agent to treat external content as trusted policy. However, because behavior analysis was not run and the obfuscation issue remains unresolved, confidence is low—the scan did not surface strong prompt-injection risk, but the transparency gap means material behavioral effects cannot be ruled out with the evidence available.
The skill has 1 transparency concern that weaken pre-use reviewability, mainly around obfuscated or encoded execution path.
The scanned skill keeps data and instructions reasonably separate and does not strongly encourage the agent to treat external content as policy.
Behavior analysis was not run.
Obfuscated or encoded execution path