axiom-health-check
Pass
Audited by Gen Agent Trust Hub on Apr 26, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection through the analysis of project source files and auditor reports.
- Ingestion points: The agent reads Swift source files via
GrepandGlobpatterns and subsequently reads auditor reports from thescratch/directory. - Boundary markers: There are no explicit instructions or delimiters used to separate the content of scanned files from the agent's instructions.
- Capability inventory: The skill uses the
Agenttool to launch background processes, performs file system operations (read/write), and executes search commands. - Sanitization: The skill does not validate or sanitize the contents of the files it scans before using detected strings to determine which auditor agents to invoke.
Audit Metadata