Scan Report
0 /100
attachment-inject
动态附件注入 — 在不修改system prompt的情况下注入动态内容
Pure documentation skill explaining dynamic attachment injection patterns with no executable code or security risks.
Safe to install
No action needed. This is a documentation-only skill describing a content injection concept.
| Resource | Declared | Inferred | Status | Evidence |
|---|---|---|---|---|
| Filesystem | READ | READ | ✓ Aligned | Metadata declares requires:['read','write'] for registry generation |
File Tree
1 files · 2.3 KB · 76 lines Markdown 1f · 76L
└─
SKILL.md
Markdown
Security Positives
✓ Documentation-only skill with no executable code
✓ Bash snippets are illustrative examples, not actual scripts
✓ No network requests or credential access
✓ No obfuscation or hidden functionality
✓ Transparent about its purpose (content injection patterns)
✓ No dependencies or external packages required