prompt-engineer-toolkit
Pass
Audited by Gen Agent Trust Hub on Sep 30, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to analyze and score prompts and test suites provided in text and JSON formats. This ingestion of external data creates a surface where malicious content within those files could attempt to influence the agent's interpretation of analysis results.
- Ingestion points: The scripts
eval_scorer.py,prompt_analyzer.py, andprompt_diff.pyread content from files passed as command-line arguments. - Boundary markers: No explicit delimiters or boundary instructions are used when processing the content of these files.
- Capability inventory: The skill is limited to reading local files and performing text analysis; it does not perform network operations or execute arbitrary code from these files.
- Sanitization: No specific sanitization or escaping is performed on the ingested text before analysis.
- [DYNAMIC_EXECUTION]: The
eval_scorer.pyutility dynamically compiles and executes regular expressions defined in theexpectedcriteria of a user-provided JSON test suite. While a standard feature for pattern validation, it represents execution of logic defined in external data. - [COMMAND_EXECUTION]: The skill defines several CLI tools implemented as Python scripts. These are intended to be executed by the agent to perform prompt evaluation and analysis. The scripts are well-structured, use the standard library, and do not invoke dangerous shell subprocesses.
Audit Metadata