agentic-readiness
Pass
Audited by Gen Agent Trust Hub on Sep 22, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The provided
audit_repo.pyscript executes localgitcommands (such asgit rev-parse,git ls-files, andgit log) to gather metadata about the repository. These calls are performed with controlled arguments and are a core part of the tool's intended auditing functionality. - [INDIRECT_PROMPT_INJECTION]: The skill is intended to process untrusted data by reading and analyzing instruction files (
AGENTS.md,CLAUDE.md) within a repository. This represents a potential injection surface where malicious repository content could attempt to influence the agent's behavior or report. The skill instructions mitigate this by directing the agent to verify all findings against build files and repository layouts, and to present evidence before recommendations. - [SAFE]: The auditing script implements safety measures to prevent accidental data exposure. It uses regex patterns to identify potential secret keys (like
api_keyortoken) in configuration files but explicitly avoids printing or reporting the associated values. Furthermore, the skill instructions specifically warn the agent never to inspect credential stores.
Audit Metadata