refactor-module
Pass
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill ingests untrusted data from
.plainfiles, establishing a surface for indirect prompt injection.\n - Ingestion points: The skill reads functional specifications, definitions, and requirements from external
.plainfiles in Phase 1.\n - Boundary markers: The instructions do not define delimiters or specific guidance to ignore potential instructions embedded within the processed module data.\n
- Capability inventory: The skill facilitates file creation, renaming, and deletion of original module files as described in Phase 3d.\n
- Sanitization: There is no mention of sanitizing or validating the content of the modules before processing or re-writing them into new files.
Audit Metadata