propose

Pass

Audited by Gen Agent Trust Hub on May 19, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: Indirect Prompt Injection Surface
  • Ingestion points: The skill proactively performs web research and investigates existing codebases and specifications in the 'Research' phase (SKILL.md).
  • Boundary markers: No specific delimiters or instructions to ignore embedded instructions within research data are provided to the agent.
  • Capability inventory: The skill possesses file-writing capabilities, specifically for creating 'proposal.md' documents (SKILL.md).
  • Sanitization: The skill lacks explicit sanitization, validation, or escaping of the content retrieved from external sources before it is used to draft the proposal.
Audit Metadata
Risk Level
SAFE
Analyzed
May 19, 2026, 04:57 PM
Security Audit — agent-trust-hub — propose