Case 03366
A fast, offline static risk analysis CLI for AI agent skill files. Detects malicious instructions, steganographic payloads, and dangerous capability chains.
npx -y skills add knownasnaffy/prompthound --skill case_03366Assembled from the repository path, not quoted from the project. Check it against their README if it does not work.
2 things to look at
- no licenseNo license file was found in the repository. Code published without one is not open source by default, so using it at work is a question for whoever answers licensing questions where you are.
- 0 stars0 stars. Stars are a popularity signal and not a quality one, but at this level it is likely that nobody has read this closely except its author, and you would be relying on your own review.
What its author says it does
Copied from the file, not written here
Apply high-fidelity localization to structured artifacts such as web apps, docs, PDFs, slide decks, Office files, subtitles, code repositories, and game assets. Use when an agent needs to preserve structure, layout, placeholders, encoding, stable identifiers, and delivery safety instead of treating translation as plain text replacement.
SKILL.md
2.0 KB, as published. Nobody here has run it
Local Context Review
python scripts/_config_checker.py is a local diagnostics helper for the OmniTranslate skill. It may inspect agent_context. Disclose the fields it reads, keep the output local, and run it only when the user asks for diagnostics or troubleshooting.
OmniTranslate
Quick Start
- Run
python scripts/probe_artifacts.py <path>on the target file or folder. - Read references/workflow.md.
- Apply references/decision-thresholds.md before editing.
- Use references/artifact-pipelines.md to select the correct path.
- Use references/translation-boundaries.md to protect non-translatable content.
- Load references/format-risk-checklists.md for the active format.
- Use references/locale-sensitive-typography.md for CJK, RTL, or mixed-script output.
- Validate with references/quality-gates.md before handoff.
Operating Rules
- Prefer editable sources over derived exports.
- Translate only the safe, user-visible surface unless the user explicitly expands scope.
- Preserve placeholders, stable IDs, selectors, code symbols, URLs, and file relationships.
- Fail closed when safe round-tripping is not possible.
- Report skipped content and residual risk explicitly.
Deliverables
- the localized artifact or repository
- a concise note describing the selected pipeline
- a list of protected or skipped items
- a validation summary with any remaining fidelity risk