skills/a-canary/arc-skills/implement/Gen Agent Trust Hub

implement

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute shell-based tools for typechecking and running test suites (both individual files and full suites) during the development process.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes potentially untrusted content from user-provided specifications or issue tickets, which serves as an attack surface for indirect prompt injection.\n
  • Ingestion points: Ingests data from a "spec or set of tickets" as described in SKILL.md.\n
  • Boundary markers: There are no explicit delimiters or instructions provided to the agent to ignore or isolate instructions embedded within the processed data.\n
  • Capability inventory: The agent is authorized to execute commands (tests, typechecking) and modify the repository (committing work).\n
  • Sanitization: No input validation or sanitization mechanisms are mentioned for the content being implemented.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 01:02 AM
Security Audit — agent-trust-hub — implement