uipath-task-refinement

Pass

Audited by Gen Agent Trust Hub on Jul 31, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill instructions do not contain attempts to override agent constraints or safety guidelines.
  • [PROMPT_INJECTION]: The skill includes a workflow for processing project data that presents a surface for indirect instructions.
  • Ingestion points: Reads project-specific data like Solution Design Documents (SDD) and task files as defined in Workflow Step 1 of SKILL.md.
  • Boundary markers: The instructions do not define specific delimiters to separate untrusted project data from internal logic.
  • Capability inventory: The skill possesses the capability to modify task files and update project trackers (Workflow Step 5).
  • Sanitization: There are no mentioned mechanisms for filtering or validating the content of the ingested project files.
  • [DATA_EXFILTRATION]: No network operations or patterns for exfiltrating sensitive local files were detected.
  • [REMOTE_CODE_EXECUTION]: The skill does not download or execute remote scripts or external packages.
  • [COMMAND_EXECUTION]: There are no shell commands or privilege escalation patterns present in the workflow.
  • [CREDENTIALS_UNSAFE]: No hardcoded credentials or private tokens were found.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 31, 2026, 04:38 PM
Security Audit — agent-trust-hub — uipath-task-refinement