project-sdlc-tracker

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides structured instructions and templates for project management within the Software Development Life Cycle (SDLC). No malicious intent or technical vulnerabilities were identified.
  • [DYNAMIC_EXECUTION]: The file contains a conceptual Python code snippet for calculating calibrated ETAs. This code serves as logic definition for the agent and does not involve unsafe execution of untrusted input, runtime compilation, or library injection. It is used as a template for the agent's internal reasoning.
  • [INDIRECT_PROMPT_INJECTION]: While the skill is designed to process untrusted project data (tasks, stories, descriptions), it serves as a formatting and management guide. It lacks high-risk capabilities like file system modification or network access that would make indirect injection exploitable in this context.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 02:09 AM
Security Audit — agent-trust-hub — project-sdlc-tracker