skills/dzhng/jevgrep/handoff-spec/Gen Agent Trust Hub

handoff-spec

Pass

Audited by Gen Agent Trust Hub on Oct 3, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill provides instructions for summarizing work-in-progress and session context. No malicious commands, data exfiltration, or obfuscation were found.
  • [INDIRECT_PROMPT_INJECTION]: The skill has a surface for indirect prompt injection as it ingests session history and repository data to generate summaries. However, the scope is limited to internal documentation and standard version control synchronization, presenting no significant security risk.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: While the skill requests the agent to push scratch results and uncommitted work to a remote repository, this is consistent with the stated purpose of machine-to-machine handoff within a controlled development environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 3, 2026, 02:29 PM
Security Audit — agent-trust-hub — handoff-spec