skills/backnotprop/bro/recap/Gen Agent Trust Hub

recap

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is limited to summarizing session context in a few sentences. No malicious patterns, command execution, or data exfiltration vectors were identified across the instructions or configuration files.
  • [INDIRECT_PROMPT_INJECTION]: The skill provides a surface for processing session history (untrusted data), but it is classified as safe because it lacks the capabilities (such as network access, file system writing, or subprocess execution) necessary to execute malicious payloads embedded in that data.
  • Ingestion points: Current session history context (SKILL.md).
  • Boundary markers: Not explicitly defined.
  • Capability inventory: None (no shell access, no network access, no file system writes).
  • Sanitization: None identified.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 02:41 AM
Security Audit — agent-trust-hub — recap