go-backend-requirement-analysis

Pass

Audited by Gen Agent Trust Hub on Jul 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill uses local shell commands exclusively for file discovery within the project directory to locate requirement documentation. This behavior is consistent with its stated purpose and does not involve network access, credential theft, or remote code execution.\n- [PROMPT_INJECTION]: The skill processes content from documentation files, which constitutes a surface for indirect prompt injection. However, the risk is negligible as it is restricted to the local development context and follows a structured analysis workflow that minimizes the impact of potential malicious instructions within documentation.\n
  • Ingestion points: Markdown files matching 'prd' or 'requirement' keywords found via Bash (SKILL.md).\n
  • Boundary markers: None explicitly defined for input reading.\n
  • Capability inventory: Read, Bash, Glob, Grep tools enabled in frontmatter.\n
  • Sanitization: None identified.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 17, 2026, 12:52 AM
Security Audit — agent-trust-hub — go-backend-requirement-analysis