project-management

Pass

Audited by Gen Agent Trust Hub on Sep 20, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No attempts to override system instructions or bypass safety filters were found. The instructions are focused entirely on project management tasks.
  • [DATA_EXFILTRATION]: No evidence of unauthorized data access or exfiltration. The skill does not access sensitive local file paths (such as .ssh or .aws) and does not contain hardcoded credentials. Placeholders used in documentation examples (e.g., 'jwt_token_here') are benign.
  • [OBFUSCATION]: The content is clear and uses plain text markdown. No hidden characters, Base64-encoded payloads, or homoglyph attacks were detected.
  • [REMOTE_CODE_EXECUTION]: The skill does not perform any remote code execution, package installations, or script downloads.
  • [COMMAND_EXECUTION]: No dangerous shell commands or privileged operations (e.g., sudo, chmod) are present.
  • [INDIRECT_PROMPT_INJECTION]: While the skill processes user input to generate documents, it does not include exploitable surfaces that would lead to prompt injection via external data ingestion.
  • [DYNAMIC_CONTEXT_INJECTION]: The skill does not use the shell command execution syntax ('!') in its SKILL.md metadata or body.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 20, 2026, 03:44 PM
Security Audit — agent-trust-hub — project-management