wrap-up
Pass
Audited by Gen Agent Trust Hub on Jul 13, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes git commands and process management to resolve session-owned state. These actions are restricted to session artifacts and require user confirmation for destructive or expanded work.
- [PROMPT_INJECTION]: The skill includes instructions that explicitly reinforce existing safety constraints and limit the agent's authority, such as "Wrap-up does not grant new authority." It also provides guidance on managing the ingestion surface of conversation history and artifacts by limiting inspection to session-relevant data (Ingestion: conversation and session artifacts in SKILL.md; Boundary markers: present in SKILL.md; Capability inventory: git status and process management in SKILL.md; Sanitization: absent).
- [DATA_EXFILTRATION]: While the skill aggregates information about the session footprint, there are no instructions to exfiltrate this data to external or untrusted network endpoints.
Audit Metadata