building-python-communities
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOWEXTERNAL_DOWNLOADS
Full Analysis
- [External Downloads] (LOW): The skill references the
actions/first-interactionGitHub Action and standard development tools likepip,pytest, andpre-commit. These are sourced from trusted entities or represent standard practices. - [Indirect Prompt Injection] (LOW): The skill defines templates for Issues and Pull Requests which are ingestion points for untrusted data. Evidence: 1. Ingestion: Issue/PR templates (SKILL.md). 2. Boundaries: Markdown headers. 3. Capabilities: No execution logic or tools with side effects are defined in this skill. 4. Sanitization: None. The risk is minimized by the lack of actionable capabilities and decision-making logic.
Audit Metadata