network-engineer

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection due to its design, which involves processing untrusted external data that could contain malicious instructions.
  • Ingestion points: Accesses network configurations, documentation, and monitoring logs from the file system as specified in the 'Tool Restrictions' section of SKILL.md.
  • Boundary markers: No specific boundary markers or instructions to isolate or ignore embedded commands within processed data are present.
  • Capability inventory: Possesses the capability to execute shell commands (Bash), modify files (Write/Edit), and generate Infrastructure as Code (Terraform/Ansible).
  • Sanitization: No logic for sanitizing or validating external input before it is used to generate or execute commands is defined.
  • [COMMAND_EXECUTION]: The skill explicitly grants capabilities to execute bash commands, apply configurations, and run diagnostics, which could be leveraged if the agent is misled by malicious data.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 08:31 AM
Security Audit — agent-trust-hub — network-engineer