consulting-export
Pass
Audited by Gen Agent Trust Hub on May 19, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill processes untrusted content from local markdown files in the deliver/, define/, and develop/ directories and passes their content to other agent skills (cogni-visual, document-skills) for rendering, creating a surface for indirect prompt injection. 1. Ingestion points: deliver/, define/, and develop/ directories (SKILL.md, Workflow Step 2.5). 2. Boundary markers: Absent. 3. Capability inventory: Write, Edit, and Skill tool execution for dispatching to renderers (SKILL.md, frontmatter and Step 2.5). 4. Sanitization: None identified.
Audit Metadata