generate-flow-diagram
Pass
Audited by Gen Agent Trust Hub on May 23, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill includes a fetch policy for external resources in references/external-sources.md. These resources, including Mermaid documentation and design articles, are used as optional references for syntax and design rationale. The skill explicitly states that these pages provide facts and examples only, not instructions to be executed.
- [PROMPT_INJECTION]: The skill processes user-provided process specifications which are a vector for indirect prompt injection. This is mitigated by a multi-step orchestration flow that includes an analysis phase to normalize input and a separate quality review phase to validate the output against a checklist before it is returned to the user.
Audit Metadata