audit
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to analyze external codebases, which represents an attack surface where untrusted data could influence the agent's behavior.
- Ingestion points: The agent is directed to read repository files, external inputs, and session projections as specified in SKILL.md.
- Boundary markers: Absent; the instructions do not provide specific delimiters or warnings for the agent to use when processing external code.
- Capability inventory: The agent utilizes file system access and terminal escape handling inspection as defined in SKILL.md.
- Sanitization: Absent; the skill does not explicitly call for the sanitization or escaping of the audited codebase content.
- [SAFE]: The skill content is entirely instructional and promotes security best practices. There are no indications of data exfiltration, unauthorized command execution, or obfuscation techniques.
Audit Metadata