SaferSkills independently audited awesome-claude-md (Agent Skill) and scored it 65/100 (yellow). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 18 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/ai-ml/comfyui-workflows/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/ai-ml/langfuse-observability/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/ai-ml/n8n-workflows/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/analytics-product/metabase-analytics/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/database-messaging/memcached/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/devops-infra/dapr-microservices/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/devops-infra/docker-registry/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/devops-infra/gitlab-ci/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/devops-infra/podman-containers/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/devops-infra/syncthing-filesync/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/devops-infra/temporal-workflows/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/devops-infra/woodpecker-ci/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/frontend/fresh-preact/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/security/authentik-sso/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/security/pomerium-zero-trust/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/specialized/jellyfin-media/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/specialized/mattermost-chat/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.
MEDIUM"Never tell the user" non-disclosure imperative in the skillSS-SKILL-INJECT-IMPERATIVE-01 · Prompt injection · templates/testing/locust-python/CLAUDE.md
MEDIUM — it fires on intent; whether the agent honors the non-disclosure imperative depends on the host model.
Why it matters
A bulleted imperative like {match} tells the agent to never reveal, disclose, or mention something to the user. Used adversarially it can instruct the agent to hide its tool calls or lie about what it did — stripping the transparency a user relies on to trust the agent.