cloudflare-one-migrations
Pass
Audited by Gen Agent Trust Hub on Sep 6, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- Indirect Prompt Injection Surface: The skill instructions involve the analysis of external configuration exports (JSON, CSV, or logs) from third-party vendors. This data ingestion creates a potential surface where malicious content embedded in a source file could attempt to influence the agent's reasoning or plan generation.
- Ingestion points: The workflow explicitly requests structured exports and logs from source stacks like Zscaler and Palo Alto for analysis.
- Boundary markers: The skill does not currently specify the use of delimiters or 'ignore' instructions to isolate imported vendor data from the agent's operational instructions.
- Capability inventory: The skill is instructional and provides logic for assessment; no tools for automated command execution, network exfiltration, or unauthorized file modifications are included.
- Sanitization: No specific requirements for validating or sanitizing the content of external exports are mentioned.
- Trusted External References: The skill references official Cloudflare documentation and reference architectures. These links target a well-known service and are used appropriately for retrieving current migration specifications and design patterns.
Audit Metadata