fix-bp-docs
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests data from local documentation files (
.md) to audit file paths, symbols, and formatting. This creates an attack surface where malicious instructions embedded in the documentation could potentially influence the agent's behavior during the audit process. - Ingestion points: Documentation files located in
docs/best_practices.mdand the./docs/best-practices/directory. - Boundary markers: The skill does not define specific delimiters or instructions to ignore embedded prompts within the documentation being processed.
- Capability inventory: The skill uses
Editfor file modification andBashto execute commands such asfind,git, andpython3. - Sanitization: No sanitization or filtering is performed on the content of the documentation files before processing.
- [COMMAND_EXECUTION]: The skill executes a local Python script located at
./script/manage-bp-ids.pywith the--validateflag. This execution is part of the intended workflow for validating documentation IDs within the repository's internal environment.
Audit Metadata