agile-sprint-review

Pass

Audited by Gen Agent Trust Hub on Apr 12, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill performs standard text processing and summarization tasks. Analysis of the instructions and templates revealed no attempts at obfuscation, credential harvesting, or unauthorized network communication.- [DATA_EXPOSURE]: The skill is designed to read project metadata (issues, reports, dailies) to generate sprint reviews. This behavior is consistent with its stated purpose and does not involve accessing sensitive system configuration files, SSH keys, or environment variables.- [PROMPT_INJECTION]: The skill possesses an ingestion surface for indirect prompt injection as it processes external data from issue trackers and status reports. While this could allow external content to influence the generated review text, the skill lacks high-risk capabilities such as shell execution or network access, which effectively mitigates the impact of such an attack. No specific delimiters or boundary markers are used to separate instructions from ingested data.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 12, 2026, 10:10 PM