document-with-diataxis

Pass

Audited by Gen Agent Trust Hub on Jul 12, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses git log --all --oneline --diff-filter=R -- 'docs/**/*.md' in SKILL.md to identify historical documentation renames. This is a read-only operation used for auditing purposes.
  • [PROMPT_INJECTION]: The skill processes user-provided documentation content to perform classification and restructuring, creating a surface for indirect prompt injection.
  • Ingestion points: Scans files within docs/, doc/, documentation/ folders and root markdown files like README.md as specified in SKILL.md.
  • Boundary markers: No explicit delimiters or instructions to ignore embedded prompts are defined for the ingested documentation content.
  • Capability inventory: The skill executes git log for auditing and proposes file system modifications (moves/renames) to the user.
  • Sanitization: There is no evidence of sanitization or escaping of the ingested documentation content.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 12, 2026, 11:50 PM
Security Audit — agent-trust-hub — document-with-diataxis