job-stories
Pass
Audited by Gen Agent Trust Hub on Sep 27, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE]: The skill consists entirely of markdown instructions and prompt templates within the SKILL.md file. There are no associated scripts, binaries, or configuration files that would allow for code execution.
- [SAFE]: A thorough review of the content reveals no signs of prompt injection, data exfiltration, or obfuscation. All instructions are aligned with the stated purpose of creating job stories.
- [INDIRECT_PROMPT_INJECTION]: The skill processes external data via variables like
$CONTEXTand$FEATURE. While it lacks boundary markers for these inputs, the skill possesses no capabilities (such as file writes, network operations, or subprocess execution) that could be exploited through these ingestion points. - [EXTERNAL_DOWNLOADS]: The skill contains a single reference to an external website for further reading on the Jobs-to-be-Done framework. This is a static documentation link and does not involve automated downloads or execution.
Audit Metadata