secops-cases
Pass
Audited by Gen Agent Trust Hub on Jun 30, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were detected. The skill is limited to retrieving and displaying case data using the list_cases tool and follows best practices for its intended persona and category.
- [INDIRECT_PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection common to tools that process external data, though the risk is minimized by its display-only functionality. (1) Ingestion points: Output from the list_cases tool (SKILL.md). (2) Boundary markers: No specific delimiters or instructions to ignore embedded commands are present. (3) Capability inventory: The skill calls list_cases and displays results in a table. (4) Sanitization: No explicit sanitization or validation of the tool output is performed before display.
Audit Metadata