requirements
Pass
Audited by Gen Agent Trust Hub on Sep 21, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill utilizes the WebFetch tool to retrieve and summarize content from external URLs provided by users when supplementing project background information or reference materials.
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from multiple external sources, which presents a surface for indirect prompt injection attacks. \n
- Ingestion points: Raw user text requirements, structured PRD index files, and content fetched from external URLs via WebFetch. \n
- Boundary markers: The output is constrained by a specific markdown template structure defined in templates/requirements-template.md. \n
- Capability inventory: The skill has permissions to write to the local documentation directory and read network content. \n
- Sanitization: Instructions explicitly advise against writing sensitive information such as API keys, passwords, or internal URLs into the documents.
- [COMMAND_EXECUTION]: The skill executes local shell commands using grep and sed to scan documentation files for existing functional point and constraint IDs to ensure sequential numbering.
Audit Metadata