agkan-planning
Pass
Audited by Gen Agent Trust Hub on Apr 8, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes the
agkanCLI utility to retrieve and manage task lists and details. - [PROMPT_INJECTION]: The skill has a surface for indirect prompt injection because it interpolates untrusted task titles and bodies into sub-agent prompts. Ingestion points: Task data is retrieved via
agkan task listandagkan task get. Boundary markers: Task content is included directly without delimiters or guardrail instructions to ignore nested directives. Capability inventory: The skill and its sub-agents can execute shell commands viaagkan. Sanitization: No filtering or sanitization of the backlog task content is performed.
Audit Metadata