software-architect

Pass

Audited by Gen Agent Trust Hub on Mar 29, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill exhibits a potential for indirect prompt injection as it is instructed to process project files and codebases while having access to sensitive tools such as bash and git.
  • Ingestion points: Project files accessed via 'File ops' and 'git' as described in the 'Herramientas disponibles' section.
  • Boundary markers: The instructions lack explicit delimiters or warnings to ignore malicious instructions embedded within the analyzed project files.
  • Capability inventory: Access to 'bash' for command execution, 'git' for repository management, and 'File ops' for reading and writing files.
  • Sanitization: There is no evidence of content sanitization or validation before processing information from external files.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 29, 2026, 02:52 PM
Security Audit — agent-trust-hub — software-architect