validate-handoff
Pass
Audited by Gen Agent Trust Hub on Apr 5, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [SAFE]: The skill performs routine architectural validation and documentation consistency checks within a software development context.
- [COMMAND_EXECUTION]: Executes
git diff --name-onlyin the 'Implementation -> Review' phase to compare local changes against review findings. This is a standard development operation with no evidence of command injection or privilege escalation. - [PROMPT_INJECTION]: The skill processes project documentation which creates a surface for indirect prompt injection. 1. Ingestion points: Reads Requirements, HLD, LLD, and Task Plan sections (SKILL.md). 2. Boundary markers: Absent; content is identified by markdown headers. 3. Capability inventory: Uses
git diff --name-only(SKILL.md). 4. Sanitization: Absent. The risk is considered minimal as the ingested data is used for structural comparison rather than command construction.
Audit Metadata