skills/compozy/kb/cy-workflow-memory/Gen Agent Trust Hub

cy-workflow-memory

Pass

Audited by Gen Agent Trust Hub on Apr 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill manages internal workflow state by reading and writing to the .compozy directory. It incorporates safeguards against capturing sensitive information by instructing the agent not to store stack traces or large code blocks in memory files.
  • [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface by ingesting data from workflow memory files.
  • Ingestion points: Shared workflow memory and current task memory files (referenced in SKILL.md).
  • Boundary markers: Absent; memory files are identified as mandatory context for the run.
  • Capability inventory: The skill involves file read and write operations on the local filesystem.
  • Sanitization: None; the content of the memory files is processed directly by the agent without escaping or validation.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 15, 2026, 12:15 AM
Security Audit — agent-trust-hub — cy-workflow-memory