create-agentsmd

Pass

Audited by Gen Agent Trust Hub on Jun 21, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill analyzes repository files (such as package.json, Makefiles, and source code) to extract project context and workflows for the AGENTS.md file.
  • Ingestion points: Project structure, configuration files, and existing documentation are read in the 'Implementation Steps'.
  • Boundary markers: No specific delimiters are used to separate the analyzed file content from the agent's instructions.
  • Capability inventory: The skill is designed to create and write the AGENTS.md file to the repository root.
  • Sanitization: The skill does not explicitly instruct the agent to sanitize or validate strings found in project files before documenting them, which is standard for a documentation generation task.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 21, 2026, 05:24 PM
Security Audit — agent-trust-hub — create-agentsmd