legacy-modernizer
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The assessment automation script in
references/system-assessment.mdutilizessubprocess.runto executegit logcommands. This is used specifically to identify 'hotspots' or frequently changed files within the targeted legacy codebase.\n- [INDIRECT_PROMPT_INJECTION]: The skill implements a codebase assessment surface that processes external source files. This represents a potential vector for indirect prompt injection if the analyzed code contains adversarial content.\n - Ingestion points: The
LegacyCodeAnalyzerclass inreferences/system-assessment.mdreads and parses all Python files (*.py) within a user-provided directory path.\n - Boundary markers: The scripts do not implement explicit boundary markers or 'ignore' instructions for the content of the files being read.\n
- Capability inventory: The skill possesses the capability to read local files via the
openfunction and execute limited shell commands usingsubprocess.runfor git analysis.\n - Sanitization: No explicit sanitization or filtering is performed on the content of the source files before they are processed by the Python
astmodule.
Audit Metadata