revops

Pass

Audited by Gen Agent Trust Hub on May 6, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill defines a workflow that ingests data from external context files, which constitutes an indirect prompt injection surface.
  • Ingestion points: The skill instructs the agent to read .agents/product-marketing-context.md or .claude/product-marketing-context.md at the start of the task to gather product marketing context.
  • Boundary markers: The instructions do not specify the use of delimiters or 'ignore' directives when processing the contents of these external files.
  • Capability inventory: The skill is primarily instructional and does not include scripts with active executable capabilities like shell command execution or network operations.
  • Sanitization: No mechanisms for sanitizing or validating the input from the external context files are described.
Audit Metadata
Risk Level
SAFE
Analyzed
May 6, 2026, 09:00 AM
Security Audit — agent-trust-hub — revops