skills/aymericb/skills/wayfinder/Gen Agent Trust Hub

wayfinder

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFEDATA_EXFILTRATIONPROMPT_INJECTION
Full Analysis
  • [DATA_EXPOSURE]: The skill's instructions for 'Task' tickets encourage recording 'credentials location' in issue resolution comments. If used on public or shared issue trackers, this can expose sensitive organizational information or internal paths to unauthorized parties.
  • [INDIRECT_PROMPT_INJECTION]: The skill operates by reading and processing content (titles, questions, and comments) from an external issue tracker, which constitutes an untrusted data source.
  • Ingestion points: The skill loads the map issue and individual ticket bodies as described in the 'Work through the map' section of SKILL.md.
  • Boundary markers: Absent. The instructions do not specify the use of delimiters or warnings to ignore instructions embedded within ticket content.
  • Capability inventory: The skill has the ability to create and modify issues, assign users, and spawn subagents to perform research based on ticket content.
  • Sanitization: Absent. There are no instructions for the agent to sanitize, validate, or escape the content retrieved from the tracker before using it to orient the session.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 11:17 AM
Security Audit — agent-trust-hub — wayfinder