security-audit

Pass

Audited by Gen Agent Trust Hub on Jun 27, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is designed to ingest and process untrusted external data, such as application source code, API definitions, and infrastructure configurations, which creates a surface for indirect prompt injection attacks. \n
  • Ingestion points: Untrusted data enters the agent context through the review of system information, source code files, and environment configurations as part of the audit workflow (SKILL.md). \n
  • Boundary markers: The instructions do not define specific delimiters or "ignore previous instruction" wrappers for the external content being analyzed. \n
  • Capability inventory: The agent is instructed to use various CLI tools (OWASP ZAP, Prowler, Trivy, etc.) and perform manual code reviews, which involves high-privilege context and data interpretation. \n
  • Sanitization: No specific data validation or sanitization steps are defined for the agent to perform before analyzing the provided external inputs.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 27, 2026, 12:01 PM
Security Audit — agent-trust-hub — security-audit