ubiquitous-language

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's instructions are limited to natural language processing and documentation tasks. It follows standard practices for domain-driven design terminology extraction.
  • [DATA_EXPOSURE]: The skill writes output to a specific, non-sensitive local file (UBIQUITOUS_LANGUAGE.md). It does not request access to sensitive directories, environment variables, or private credentials.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user conversation data, which is an inherent part of its functionality. However, it is restricted to generating markdown documentation and lacks capabilities that would allow for high-risk exploitation from injected content.
  • [REMOTE_CODE_EXECUTION]: There are no patterns suggesting the download or execution of external scripts. References to 'exec' and 'shell commands' in the documentation are part of a hypothetical example dialogue and are not instructions for the agent to execute code.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 01:03 AM
Security Audit — agent-trust-hub — ubiquitous-language