revops
Pass
Audited by Gen Agent Trust Hub on Apr 20, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill instructs the agent to read external context files, which creates a surface for indirect prompt injection if those files contain adversarial content.\n
- Ingestion points:
.agents/product-marketing-context.mdand.claude/product-marketing-context.mdreferenced inSKILL.md.\n - Boundary markers: Absent; the skill does not provide delimiters or specific instructions for the agent to treat context file content as untrusted data.\n
- Capability inventory: Low risk; the skill focuses on strategic advice and process design, lacking tools for network exfiltration, filesystem modification, or command execution.\n
- Sanitization: Absent; no validation or escaping of ingested data is described.
Audit Metadata