graph-traceability-agent

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes several external files which could contain instructions intended to influence the traceability logic or reports.\n
  • Ingestion points: .agile-v/REQUIREMENTS.md, impact_map.md, affected_components.json, implementation diffs, test results, and normalized_graph.json (SKILL.md).\n
  • Boundary markers: Absent. There are no defined delimiters to isolate the ingested data from the skill's operational instructions.\n
  • Capability inventory: The skill performs extensive file system reads for input processing and writes multiple output files (Markdown and JSON) to the .agile-v/traceability/ directory (SKILL.md).\n
  • Sanitization: Absent. The skill does not specify procedures for validating or escaping the content of ingested files before processing.\n- [SAFE]: The skill operates strictly within vendor-defined directories and targets standard software engineering artifacts, aligning with its stated purpose of audit evidence generation.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 06:07 AM
Security Audit — agent-trust-hub — graph-traceability-agent