gjalla-debug

Pass

Audited by Gen Agent Trust Hub on Aug 16, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill consists of high-level instructions for debugging and does not include any executable code, remote script downloads, or unauthorized access to sensitive information.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external bug reports, creating a surface for potential indirect prompt injection. This is necessary for the skill's primary function and is mitigated by the agent's general safety protocols.
  • Ingestion points: User-provided bug reports and symptom descriptions (SKILL.md).
  • Boundary markers: No explicit delimiters or boundary markers are defined in the instructions.
  • Capability inventory: Code execution for reproduction, repository searching via grep, and writing to the internal knowledge base (gjalla memory).
  • Sanitization: No explicit content sanitization or validation logic is specified.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 16, 2026, 09:46 PM
Security Audit — agent-trust-hub — gjalla-debug