brainstorming
Pass
Audited by Gen Agent Trust Hub on May 14, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: No security issues detected. The skill is entirely conversational and facilitates brainstorming sessions using text-based techniques.
- [NO_CODE]: The skill does not include any executable scripts, binary files, or external code dependencies, significantly reducing the attack surface.
- [PROMPT_INJECTION]: Indirect Prompt Injection Surface: The skill ingests untrusted user input and interpolates it into a structured output document. Ingestion points: User input captured during the brainstorming workflow in SKILL.md (Steps 1 and 3). Boundary markers: Absent in the output template (resources/brainstorming-output-tmpl.yaml). Capability inventory: No dangerous capabilities (subprocess execution, file system modification, or network operations) are detected across the skill files. Sanitization: No explicit validation or escaping is performed on user-provided ideas before interpolation.
Audit Metadata