dont-forget
Pass
Audited by Gen Agent Trust Hub on Sep 9, 2026
Risk Level: SAFECOMMAND_EXECUTIONPERSISTENCEINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides instructions for creating and integrating automated scripts, Makefiles, and npm command chains into a repository to enforce development standards. Evidence found in SKILL.md Enforcement ladder and patterns sections.
- [PERSISTENCE]: To ensure obligations are maintained between sessions, the skill describes implementing long-lived triggers such as GitHub Actions, cron jobs, and git hooks. Evidence in SKILL.md Tier 1, 2, and 6 descriptions.
- [INDIRECT_PROMPT_INJECTION]: The skill ingests user prompts that express ongoing requirements (e.g., 'never forget') and uses repository-wide capabilities to implement them. It manages this risk through a mandatory approval workflow (Workflow step 3b) where the agent must present a specific plan to the user before proceeding, ensuring the user retains control over the execution context.
Audit Metadata