load-context-instructions — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited load-context-instructions (Agent Skill) and scored it 96/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 1 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 1 flagged
The text {match} tells the agent to skip the normal "ask the user first" gate. Used adversarially it removes the human-in-the-loop check before destructive or sensitive actions, turning a normally-gated agent into a fire-and-forget executor.
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
<load-context-instructions>
<prerequisites>
</prerequisites>
<mode-detection>
RUNNING AS A PLUGIN is in context → Plugin modeget_context_instructions tool is available → MCP mode</mode-detection>
<plugin-mode>
get_context_instructions is complete; do NOT call Rosetta MCPph-prep plan steps from loaded bootstrap rules in full</plugin-mode>
<mcp-mode>
get_context_instructions MCP tool — blocking gate, do not proceed until completeph-prep steps upserted by returned instructions — no skipping, no partial execution</mcp-mode>
<fallback-mode>
bootstrap.md, bootstrap-core-policy.md, bootstrap-execution-policy.md, bootstrap-guardrails.md, bootstrap-rosetta-files.md. Skip any that are missing.docs/*.md and workspace root *.md files to gather context</fallback-mode>
<next-steps>
load-context</next-steps>
</load-context-instructions>
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.