org-design
Pass
Audited by Gen Agent Trust Hub on Sep 24, 2026
Risk Level: SAFENO_CODEINDIRECT_PROMPT_INJECTION
Full Analysis
- [NO_CODE]: The skill is composed entirely of Markdown documentation (SKILL.md and references/operating-models-and-roles.md). It contains no executable scripts, binaries, or configuration files that would perform operations on the host environment.\n- [INDIRECT_PROMPT_INJECTION]: The skill defines a process for analyzing external business data, creating a theoretical attack surface for indirect prompt injection.\n
- Ingestion points: Instructions in 'SKILL.md' direct the agent to process strategy, work flows, and organization data.\n
- Boundary markers: The skill does not define specific delimiters for external data.\n
- Capability inventory: The skill contains no executable tools, network access, or file-writing capabilities.\n
- Sanitization: No data sanitization or instruction-ignoring patterns are implemented.\n- [SAFE]: The skill does not contain any patterns associated with prompt injection, data exfiltration, or obfuscation. All external resource references are local to the skill directory.
Audit Metadata