standup

Pass

Audited by Gen Agent Trust Hub on Jun 14, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external content that could contain malicious instructions.
  • Ingestion points: The instructions direct the agent to pull data from source control (commits, PRs), project trackers (tickets), and chat systems.
  • Boundary markers: The skill lacks delimiters or explicit instructions for the agent to ignore embedded commands within the fetched data.
  • Capability inventory: The skill uses the Read, Glob, and Grep tools to access and search through workspace files.
  • Sanitization: No validation or filtering of external content is specified before the data is formatted into the standup update.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 14, 2026, 08:50 AM
Security Audit — agent-trust-hub — standup