diagnostics-Diagnostics-specialist

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFENO_CODEPROMPT_INJECTION
Full Analysis
  • [NO_CODE]: The skill is composed entirely of markdown documentation and YAML frontmatter. It contains no scripts, binaries, or automated tool definitions.
  • [PROMPT_INJECTION]: The skill describes a workflow that ingests data from another agent ('tracer-qualityforge-execution-tracer'). This establishes a surface for indirect prompt injection if the source agent handles untrusted data.
  • Ingestion points: The 'Standard Workflow' in SKILL.md specifies receiving and analyzing requirements from an external agent.
  • Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the documentation.
  • Capability inventory: No executable tools, file system access, or network capabilities are defined within this skill.
  • Sanitization: No sanitization or validation logic is specified for the ingested requirements.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 04:17 AM
Security Audit — agent-trust-hub — diagnostics-Diagnostics-specialist