overview
Pass
Audited by Gen Agent Trust Hub on Aug 30, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes the local codebase structure and components to generate diagrams, which represents an untrusted data ingestion surface.
- Ingestion points: The agent is instructed to scan and explore the codebase structure, entry points, and components (SKILL.md).
- Boundary markers: No specific delimiters or instructions are provided to the agent to ignore embedded instructions found within the code or comments.
- Capability inventory: The agent has the capability to read and scan files across the codebase.
- Sanitization: There is no explicit sanitization or filtering mentioned for the content retrieved from the codebase before it is used to generate text and diagrams.
Audit Metadata