review-brief

Pass

Audited by Gen Agent Trust Hub on Jul 25, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: Indirect Prompt Injection Surface. The skill processes external visual brief files and source narratives which are untrusted data sources.
  • Ingestion points: The skill ingests data from local files matching *-brief.md and associated narrative files via the Read tool.
  • Boundary markers: The instructions do not define clear delimiters or 'ignore' instructions when passing the content of the briefs to the brief-review-assessor agent.
  • Capability inventory: The skill has file-write capabilities (modifying briefs and writing JSON artifacts) and the ability to invoke other agents.
  • Sanitization: There is no evidence of sanitization, filtering, or validation of the text content retrieved from the files before it is used to drive the revision logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 25, 2026, 01:51 PM
Security Audit — agent-trust-hub — review-brief