skills/alirezarezvani/gaios/structure/Gen Agent Trust Hub

structure

Pass

Audited by Gen Agent Trust Hub on Aug 30, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill defines a structured workflow for information processing without introducing malicious code, remote dependencies, or unauthorized system access. It incorporates safety-oriented instructions to prevent the persistence of sensitive data and ensures that any external communication requires explicit user approval.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external data (emails, tickets, chat messages), which represents an attack surface for indirect prompt injection. However, the risks are managed by the skill's limited scope and the inclusion of data-handling guardrails. 1. Ingestion points: Inputs derived from email threads, chat messages, and tickets as described in the Process section of SKILL.md. 2. Boundary markers: None; the instructions do not define delimiters for untrusted content. 3. Capability inventory: Ability to log decisions to 'decisions/log.md' and create artifacts like tickets or notes. 4. Sanitization: Not explicitly defined for external content interpolation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 30, 2026, 07:20 PM
Security Audit — agent-trust-hub — structure