low-risk-change-verification

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill guides the agent to process untrusted external data such as pull request diffs, changelogs, and release notes. • Ingestion points: The instructions in SKILL.md direct the agent to analyze package version deltas and check release notes. • Boundary markers: The skill does not provide delimiters to isolate untrusted changelog content from the agent's core instructions. • Capability inventory: The workflow involves agents with the ability to approve pull requests and run test suites. • Sanitization: No sanitization of the external text content is suggested.
  • [SAFE]: The skill consists exclusively of markdown documentation and templates. It does not include any scripts, network requests, or sensitive file access, and it encourages higher scrutiny for potentially risky automated changes.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 03:57 PM
Security Audit — agent-trust-hub — low-risk-change-verification