zoom-out
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill analyzes external codebase files using
Read,Grep, andGlobtools, which allows untrusted data to enter the agent's context. - Ingestion points: Module files and codebase directories accessed via the allowed architectural mapping tools.
- Boundary markers: Absent. The skill lacks explicit delimiters or instructions to ignore embedded commands within the analyzed code.
- Capability inventory: Limited to read-only file access (
Read,Grep,Glob). It possesses no tools for network exfiltration, file system modification, or system command execution. - Sanitization: No mechanisms are provided to sanitize or validate the content of the analyzed files.
Audit Metadata