incident-response-commander

Pass

Audited by Gen Agent Trust Hub on Sep 27, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill is composed of markdown instructions and templates designed to guide human users through incident response phases, including triage, investigation, communication, and post-mortem analysis.
  • [SAFE]: No executable code, scripts, or external software dependencies (Python or Node.js packages) are included or required by the skill files.
  • [SAFE]: The skill does not perform any automated network operations, file system access, or command-line executions. It functions as a static reference framework for the agent to use during interactions.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines workflows for investigating external data such as system logs, metrics, and user reports. These ingestion points represent a surface for indirect prompt injection where an attacker could embed instructions in data processed by the agent. However, the skill provides no automated tools for ingestion and emphasizes human-in-the-loop triage and blameless analysis, which aligns with its primary purpose and standard security practices for incident response.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 27, 2026, 06:53 PM
Security Audit — agent-trust-hub — incident-response-commander