axiom-audit-swiftui-nav

Pass

Audited by Gen Agent Trust Hub on Apr 26, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to Indirect Prompt Injection (Category 8) because it processes untrusted data from the user's project files.
  • Ingestion points: Reads **/*.swift files via Glob and Grep operations to build a mental model and detect patterns.
  • Boundary markers: The instructions do not define specific delimiters (like XML tags or triple quotes) to separate code content from instructions, though it advises the agent to verify context.
  • Capability inventory: The agent has the ability to read files, grep content, and potentially execute further instructions based on its analysis.
  • Sanitization: There is no explicit instruction to sanitize or ignore instructions embedded in code comments (e.g., instructions masquerading as code comments to influence the auditor's verdict).
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 26, 2026, 12:45 AM
Security Audit — agent-trust-hub — axiom-audit-swiftui-nav