org-design

Pass

Audited by Gen Agent Trust Hub on Sep 24, 2026

Risk Level: SAFENO_CODEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [NO_CODE]: The skill is composed entirely of Markdown documentation (SKILL.md and references/operating-models-and-roles.md). It contains no executable scripts, binaries, or configuration files that would perform operations on the host environment.\n- [INDIRECT_PROMPT_INJECTION]: The skill defines a process for analyzing external business data, creating a theoretical attack surface for indirect prompt injection.\n
  • Ingestion points: Instructions in 'SKILL.md' direct the agent to process strategy, work flows, and organization data.\n
  • Boundary markers: The skill does not define specific delimiters for external data.\n
  • Capability inventory: The skill contains no executable tools, network access, or file-writing capabilities.\n
  • Sanitization: No data sanitization or instruction-ignoring patterns are implemented.\n- [SAFE]: The skill does not contain any patterns associated with prompt injection, data exfiltration, or obfuscation. All external resource references are local to the skill directory.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 24, 2026, 12:46 PM
Security Audit — agent-trust-hub — org-design