software-architect
Pass
Audited by Gen Agent Trust Hub on Mar 29, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill exhibits a potential for indirect prompt injection as it is instructed to process project files and codebases while having access to sensitive tools such as bash and git.
- Ingestion points: Project files accessed via 'File ops' and 'git' as described in the 'Herramientas disponibles' section.
- Boundary markers: The instructions lack explicit delimiters or warnings to ignore malicious instructions embedded within the analyzed project files.
- Capability inventory: Access to 'bash' for command execution, 'git' for repository management, and 'File ops' for reading and writing files.
- Sanitization: There is no evidence of content sanitization or validation before processing information from external files.
Audit Metadata