to-prd
Pass
Audited by Gen Agent Trust Hub on Aug 5, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or unauthorized network access were found in the skill or its associated templates.
- [COMMAND_EXECUTION]: The skill performs file-write operations to the
docs/01-Requirements/directory. This is consistent with its stated purpose of document generation and is only executed after explicit user confirmation. - [PROMPT_INJECTION]: The skill processes untrusted conversation history (Step 1) to generate PRD drafts. While this is a surface for indirect prompt injection, the risk is mitigated by structured boundary markers in the PRD template and a mandatory 'Approval Gate' (Step 3) that requires human review and confirmation before the content is persisted to the file system.
Audit Metadata