job-stories

Pass

Audited by Gen Agent Trust Hub on Sep 27, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [NO_CODE]: The skill consists entirely of markdown instructions and prompt templates within the SKILL.md file. There are no associated scripts, binaries, or configuration files that would allow for code execution.
  • [SAFE]: A thorough review of the content reveals no signs of prompt injection, data exfiltration, or obfuscation. All instructions are aligned with the stated purpose of creating job stories.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external data via variables like $CONTEXT and $FEATURE. While it lacks boundary markers for these inputs, the skill possesses no capabilities (such as file writes, network operations, or subprocess execution) that could be exploited through these ingestion points.
  • [EXTERNAL_DOWNLOADS]: The skill contains a single reference to an external website for further reading on the Jobs-to-be-Done framework. This is a static documentation link and does not involve automated downloads or execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 27, 2026, 10:35 AM
Security Audit — agent-trust-hub — job-stories