Security audit
TRPG YAML to SVG Maps
Security checks for vulnerabilities and agentic risk
Overview
This skill only directs the agent to convert existing TRPG YAML map files into nearby SVG map files, with clear limits and no hidden execution behavior.
Before installing, confirm you want an agent to read TRPG map YAML files from the workspace and create SVG files next to them. The skill is narrowly scoped and tells the agent not to alter the source YAML files.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
