opc-conversion-loop

Pass

Audited by Gen Agent Trust Hub on Apr 11, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests data from local files located in opc-doc/outputs/06-mvp-design/ to inform its design process.
  • Ingestion points: Files within the opc-doc/outputs/06-mvp-design/ directory (referenced in the 'Input' section of SKILL.md).
  • Boundary markers: None explicitly defined in the instructions for data reading.
  • Capability inventory: The skill uses a write tool to create and update files in the opc-doc/ directory tree.
  • Sanitization: No specific sanitization or validation of the input file content is described.
  • [COMMAND_EXECUTION]: The skill is configured to use a tool to write markdown and JSON files to the local opc-doc/ directory for project persistence. This is a standard functional requirement for the skill's stated purpose and is restricted to a project-specific path.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 11, 2026, 03:24 PM
Security Audit — agent-trust-hub — opc-conversion-loop