skills/automattic/studio/migrate/Gen Agent Trust Hub

migrate

Pass

Audited by Gen Agent Trust Hub on Jul 26, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: Indirect Prompt Injection Surface. The skill is designed to ingest and process data from untrusted external URLs and local directories for site migration.
  • Ingestion points: External URLs and local directories as specified in the SKILL.md.
  • Boundary markers: No explicit markers or instructions to isolate the untrusted input are provided in this wrapper.
  • Capability inventory: The initiated migration workflow includes content extraction, reconstruction, and environment provisioning.
  • Sanitization: No sanitization or validation of the input content is described in the provided skill file.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 26, 2026, 03:02 AM
Security Audit — agent-trust-hub — migrate