skills/chidekina/aria-superpowers/prd/Gen Agent Trust Hub

prd

Pass

Audited by Gen Agent Trust Hub on Mar 21, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill instructions are focused solely on document generation and process flow for project planning. No malicious patterns, such as unauthorized network operations, credential theft, or remote code execution, were detected. The activities described are consistent with the skill's stated purpose.\n- [PROMPT_INJECTION]: The skill exhibits a surface for indirect prompt injection as it accepts feature descriptions from users and incorporates them into generated PRD and YAML files.\n
  • Ingestion points: User-provided feature descriptions used to generate the PRD and spec files (SKILL.md).\n
  • Boundary markers: No explicit markers or instructions to ignore embedded commands are used to delimit user input.\n
  • Capability inventory: The skill has the capability to write files to the local tasks/ directory (SKILL.md).\n
  • Sanitization: No input validation or sanitization of user-provided content is specified in the instruction set.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 21, 2026, 02:42 AM
Security Audit — agent-trust-hub — prd