Operational instructions are delegated to an external Skill whose source is absent
Source references: 3The sole runtime instruction calls “grilling,” but that Skill’s implementation is not provided. The displayed plan-interview purpose neither constrains nor demonstrates what the invoked Skill actually does.
After the user explicitly starts this wrapper, the agent may follow all instructions supplied by the environment’s current “grilling” Skill. Those instructions could request additional information or perform actions that this audit cannot verify. The supplied material does not establish which files, data, accounts, or tools it may access.
The package’s only operational instruction delegates to another Skill named “grilling,” whose source is absent, so its file, network, or account behavior cannot be verified. The metadata indicates it should require explicit invocation, reducing accidental activation, but this does not constrain the delegated Skill. A user can ask for the dependency’s complete, pinned source and restrict its file, network, and account permissions before use.
This assessment concerns the code and conditions shown, not proof that harm has occurred.---name: grill-medescription: A relentless interview to sharpen a plan or design.disable-model-invocation: true---Call the Skill tool with "grilling".Show 2 other places
short_description: "Sharpen a plan through interview"policy: allow_implicit_invocation: falseCall the Skill tool with "grilling".