scanner-tuning

Pass

Audited by Gen Agent Trust Hub on Jul 2, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: Potential surface for indirect prompt injection discovered in the handling of external scan data.\n- Ingestion points: The skill instructions involve analyzing untrusted external content including vulnerability scan results, plugin descriptions, advisories, and service banners (SKILL.md).\n- Boundary markers: No specific technical delimiters (such as XML tags or unique string markers) are defined to isolate untrusted data inputs.\n- Capability inventory: The agent has access to file system tools (Read, Grep, Glob) which could be misused if an injection is successful.\n- Sanitization: The skill explicitly includes a 'Prompt Injection Safety Notice' that instructs the agent to ignore any commands embedded in target data or banners and to report them as suspicious.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 2, 2026, 01:37 PM
Security Audit — agent-trust-hub — scanner-tuning