vibe-coding

Pass

Audited by Gen Agent Trust Hub on Sep 7, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill functions as an orchestrator that determines routing based on external project state and artifact content, creating a surface for indirect instructions.
  • Ingestion points: Routing state is rebund from artifact paths and repository metadata during continuation turns (SKILL.md).
  • Boundary markers: The skill documentation enforces explicit approval gates, stop conditions, and human-in-the-loop requirements for high-risk actions. It contains specific warnings against 'artifact-injected' boundary evidence.
  • Capability inventory: The orchestrator routes to execution and commit phases which possess file-system and repository modification capabilities.
  • Sanitization: The implementation uses a classification mechanism and verification gates to validate handoff evidence before proceeding to downstream specialists.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 7, 2026, 02:38 PM
Security Audit — agent-trust-hub — vibe-coding