requirements

Pass

Audited by Gen Agent Trust Hub on Sep 21, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill utilizes the WebFetch tool to retrieve and summarize content from external URLs provided by users when supplementing project background information or reference materials.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from multiple external sources, which presents a surface for indirect prompt injection attacks. \n
  • Ingestion points: Raw user text requirements, structured PRD index files, and content fetched from external URLs via WebFetch. \n
  • Boundary markers: The output is constrained by a specific markdown template structure defined in templates/requirements-template.md. \n
  • Capability inventory: The skill has permissions to write to the local documentation directory and read network content. \n
  • Sanitization: Instructions explicitly advise against writing sensitive information such as API keys, passwords, or internal URLs into the documents.
  • [COMMAND_EXECUTION]: The skill executes local shell commands using grep and sed to scan documentation files for existing functional point and constraint IDs to ensure sequential numbering.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 21, 2026, 08:53 AM
Security Audit — agent-trust-hub — requirements