legacy-modernizer

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The assessment automation script in references/system-assessment.md utilizes subprocess.run to execute git log commands. This is used specifically to identify 'hotspots' or frequently changed files within the targeted legacy codebase.\n- [INDIRECT_PROMPT_INJECTION]: The skill implements a codebase assessment surface that processes external source files. This represents a potential vector for indirect prompt injection if the analyzed code contains adversarial content.\n
  • Ingestion points: The LegacyCodeAnalyzer class in references/system-assessment.md reads and parses all Python files (*.py) within a user-provided directory path.\n
  • Boundary markers: The scripts do not implement explicit boundary markers or 'ignore' instructions for the content of the files being read.\n
  • Capability inventory: The skill possesses the capability to read local files via the open function and execute limited shell commands using subprocess.run for git analysis.\n
  • Sanitization: No explicit sanitization or filtering is performed on the content of the source files before they are processed by the Python ast module.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 03:49 PM
Security Audit — agent-trust-hub — legacy-modernizer