workflow-trellis

Pass

Audited by Gen Agent Trust Hub on Jun 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues detected. The skill provides an instructional framework for workflow analysis and product strategy without using external tools, network calls, or script execution.
  • [PROMPT_INJECTION]: The skill processes untrusted external data such as interviews and transcripts, creating a surface for indirect prompt injection.
  • Ingestion points: User-provided material such as interviews, transcripts, and notes (referenced in SKILL.md).
  • Boundary markers: Absent; the instructions do not specify the use of delimiters or warnings to ignore instructions within the processed research material.
  • Capability inventory: No capabilities for network access, file system writes, or subprocess execution are present in the skill.
  • Sanitization: Absent; the skill does not instruct the agent to sanitize or validate the provided research material.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 29, 2026, 07:04 PM
Security Audit — agent-trust-hub — workflow-trellis