overview

Pass

Audited by Gen Agent Trust Hub on Aug 30, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes the local codebase structure and components to generate diagrams, which represents an untrusted data ingestion surface.
  • Ingestion points: The agent is instructed to scan and explore the codebase structure, entry points, and components (SKILL.md).
  • Boundary markers: No specific delimiters or instructions are provided to the agent to ignore embedded instructions found within the code or comments.
  • Capability inventory: The agent has the capability to read and scan files across the codebase.
  • Sanitization: There is no explicit sanitization or filtering mentioned for the content retrieved from the codebase before it is used to generate text and diagrams.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 30, 2026, 10:29 PM
Security Audit — agent-trust-hub — overview