axiom-audit-swiftui-nav
Pass
Audited by Gen Agent Trust Hub on Apr 26, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill is susceptible to Indirect Prompt Injection (Category 8) because it processes untrusted data from the user's project files.
- Ingestion points: Reads
**/*.swiftfiles viaGlobandGrepoperations to build a mental model and detect patterns. - Boundary markers: The instructions do not define specific delimiters (like XML tags or triple quotes) to separate code content from instructions, though it advises the agent to verify context.
- Capability inventory: The agent has the ability to read files, grep content, and potentially execute further instructions based on its analysis.
- Sanitization: There is no explicit instruction to sanitize or ignore instructions embedded in code comments (e.g., instructions masquerading as code comments to influence the auditor's verdict).
Audit Metadata