skills/astro-han/skills/wrap-up/Gen Agent Trust Hub

wrap-up

Pass

Audited by Gen Agent Trust Hub on Jul 13, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes git commands and process management to resolve session-owned state. These actions are restricted to session artifacts and require user confirmation for destructive or expanded work.
  • [PROMPT_INJECTION]: The skill includes instructions that explicitly reinforce existing safety constraints and limit the agent's authority, such as "Wrap-up does not grant new authority." It also provides guidance on managing the ingestion surface of conversation history and artifacts by limiting inspection to session-relevant data (Ingestion: conversation and session artifacts in SKILL.md; Boundary markers: present in SKILL.md; Capability inventory: git status and process management in SKILL.md; Sanitization: absent).
  • [DATA_EXFILTRATION]: While the skill aggregates information about the session footprint, there are no instructions to exfiltrate this data to external or untrusted network endpoints.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 13, 2026, 03:00 AM
Security Audit — agent-trust-hub — wrap-up