php-symfony-audit
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process and analyze untrusted project source code provided via the
source_pathparameter. - Ingestion points: Source code files including
composer.json,security.yaml, Twig templates (.twig), and PHP controllers. - Boundary markers: The instructions do not define explicit delimiters or headers to isolate external source code from the agent's core instructions.
- Capability inventory: The skill performs file reading and auditing tasks; however, no specific tool restrictions are defined in the YAML frontmatter, meaning the agent operates within its platform-defined permissions.
- Sanitization: There are no specific instructions for sanitizing or filtering the content of the audited files before processing.
Audit Metadata