w-clarify
Pass
Audited by Gen Agent Trust Hub on Sep 21, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill consists exclusively of instructions for the agent to follow when clarifying project requirements. No code or commands are executed.
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to read external files such as PRODUCT.md, code, and documentation, creating an ingestion surface for indirect prompt injection. 1. Ingestion points: Project code, documentation, and PRODUCT.md. 2. Boundary markers: Absent. 3. Capability inventory: The skill has no associated scripts, network operations, or file-writing tools, and the frontmatter explicitly disables model invocation. 4. Sanitization: Absent. The lack of exploitable capabilities renders this finding safe.
Audit Metadata