redux
Audited by ZeroLeaks on Apr 15, 2026
The SKILL.md is clear, well-structured, and fully reviewable — it documents a Redux adapter for a StateStore interface with straightforward installation, usage examples, and an API table, with no hidden logic or obfuscated content. It stays clear of instruction/data boundary issues and does not push the agent to treat external content as trusted instructions. Tested scenarios did not show material prompt-injection risk or skill-induced worsening of downstream behavior, though confidence is low because behavior analysis was not run, leaving a meaningful gap in validation scope.
The skill markdown is clear, self-contained, and fully transparent about what it does. It describes a Redux adapter for a json-render StateStore interface, provides installation commands, a complete usage example, and a well-documented API table. There are no hidden execution paths, no remote script fetching, no shell commands beyond standard npm install, no obfuscated payloads, no secrets, and no internally inconsistent instructions.
The scanned skill keeps data and instructions reasonably separate and does not strongly encourage the agent to treat external content as policy.
Behavior analysis was not run.