info-architecture

Pass

Audited by Gen Agent Trust Hub on Aug 30, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to analyze and restructure file systems and content, creating an attack surface where instructions embedded in processed files could influence agent behavior during refactoring.
  • Ingestion points: Processes existing file/directory organizations and content (SKILL.md).
  • Boundary markers: Absent; no instructions are provided to the agent to ignore potentially malicious embedded content during analysis.
  • Capability inventory: The skill utilizes capabilities to rename files, restructure hierarchies, and update cross-references/imports (SKILL.md).
  • Sanitization: Absent; no validation or filtering of ingested file data is mentioned.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 30, 2026, 10:29 PM
Security Audit — agent-trust-hub — info-architecture