network-engineer
Pass
Audited by Gen Agent Trust Hub on Apr 21, 2026
Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection due to its design, which involves processing untrusted external data that could contain malicious instructions.
- Ingestion points: Accesses network configurations, documentation, and monitoring logs from the file system as specified in the 'Tool Restrictions' section of SKILL.md.
- Boundary markers: No specific boundary markers or instructions to isolate or ignore embedded commands within processed data are present.
- Capability inventory: Possesses the capability to execute shell commands (Bash), modify files (Write/Edit), and generate Infrastructure as Code (Terraform/Ansible).
- Sanitization: No logic for sanitizing or validating external input before it is used to generate or execute commands is defined.
- [COMMAND_EXECUTION]: The skill explicitly grants capabilities to execute bash commands, apply configurations, and run diagnostics, which could be leveraged if the agent is misled by malicious data.
Audit Metadata