agile-v-product-owner
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill is entirely focused on structured documentation and workflow management. It does not utilize external scripts, perform network operations, or access sensitive configuration files beyond the project's own agile artifacts.
- [INDIRECT_PROMPT_INJECTION]: The skill possesses a vulnerability surface for indirect prompt injection as it is designed to process external project data.
- Ingestion points: The skill reads instructions and requirements from
REQUIREMENTS.mdandBACKLOG.mdto perform its tasks. - Boundary markers: There are no explicit delimiters or instructions provided to the agent to distinguish between its core instructions and potentially malicious content embedded within the project files.
- Capability inventory: The skill's capabilities are restricted to reading and writing markdown documentation within the project structure.
- Sanitization: No validation or sanitization routines are specified for handling the content parsed from external markdown files.
Audit Metadata