deep-document-processor
Pass
Audited by Gen Agent Trust Hub on Mar 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of instructional Markdown content that defines a multi-pass document reading protocol. It does not contain any executable scripts, command-line operations, or network requests.- [PROMPT_INJECTION]: Analysis of the indirect prompt injection surface: 1. Ingestion points: The skill is designed to process external documents and codebases (SKILL.md). 2. Boundary markers: Uses structured output markers like '=== CONTEXT ===' but does not explicitly instruct the agent to ignore instructions embedded in source documents. 3. Capability inventory: No technical capabilities such as subprocess execution, network access, or file-system writing are utilized. 4. Sanitization: No mechanisms for escaping or filtering untrusted content are specified. The lack of capabilities mitigates the risk associated with this surface.
Audit Metadata