product-manager-feature-doc-phase

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes content from various project files which could contain instructions designed to manipulate the agent's behavior during the document generation phase.
  • Ingestion points: Reads candidate-matrix.md, research.md, and evidence-log.md to gather context for the feature document.
  • Boundary markers: The instructions do not define clear delimiters or warnings to ignore instructions found within the input files.
  • Capability inventory: The skill has the ability to write new markdown files to the features/ directory.
  • Sanitization: There are no explicit sanitization steps for the data pulled from research or candidate files before it is used to generate the final documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 06:55 AM
Security Audit — agent-trust-hub — product-manager-feature-doc-phase