skills/bnema/opencode-public/simplify/Gen Agent Trust Hub

simplify

Pass

Audited by Gen Agent Trust Hub on Jul 5, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill ingests untrusted data from git diff output, creating a potential surface for indirect prompt injection if processing changes from external sources. 1. Ingestion points: git diff output in Phase 1 of SKILL.md. 2. Boundary markers: Not explicitly defined in the instructions passed to sub-agents. 3. Capability inventory: File-write and modification capabilities described in Phase 3. 4. Sanitization: No validation or filtering is performed on the ingested diff content.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 5, 2026, 03:23 AM
Security Audit — agent-trust-hub — simplify