validate-handoff

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill performs routine architectural validation and documentation consistency checks within a software development context.
  • [COMMAND_EXECUTION]: Executes git diff --name-only in the 'Implementation -> Review' phase to compare local changes against review findings. This is a standard development operation with no evidence of command injection or privilege escalation.
  • [PROMPT_INJECTION]: The skill processes project documentation which creates a surface for indirect prompt injection. 1. Ingestion points: Reads Requirements, HLD, LLD, and Task Plan sections (SKILL.md). 2. Boundary markers: Absent; content is identified by markdown headers. 3. Capability inventory: Uses git diff --name-only (SKILL.md). 4. Sanitization: Absent. The risk is considered minimal as the ingested data is used for structural comparison rather than command construction.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 12:44 AM
Security Audit — agent-trust-hub — validate-handoff