fitness
Pass
Audited by Gen Agent Trust Hub on Sep 9, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from
GOALS.mdor legacy YAML files to perform fitness measurements. - Ingestion points: Reads
GOALS.mdor alternative YAML project goal files from the project directory. - Boundary markers: Explicitly instructs the agent to avoid "advice creep" (turning reports into work selection) and provides a specific format for results, requiring the agent to stop after returning the aggregate measurement.
- Capability inventory: The skill executes
ao goalsCLI commands and writes data to the filesystem at.agents/ao/goals/baselines/or a caller-specified path via therender --outflag. - Sanitization: No explicit sanitization or content validation of the input files is described before processing.
- [COMMAND_EXECUTION]: The skill relies on the
ao goalsCLI family (measure, validate, drift, history, export, meta, scenarios, render) to perform its core functions. These commands are executed via the shell to generate JSON or text outputs.
Audit Metadata