migrate-pipeline

Pass

Audited by Gen Agent Trust Hub on Mar 18, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes external pipeline configuration data, creating a surface for indirect prompt injection attacks.
  • Ingestion points: Untrusted pipeline data enters the agent context via the harness_get tool mentioned in SKILL.md.
  • Boundary markers: The instructions do not specify the use of delimiters or 'ignore' instructions for the data being transformed.
  • Capability inventory: The skill has the capability to modify environment resources using the harness_update tool.
  • Sanitization: There is no evidence of schema validation or content filtering for the incoming pipeline YAML before it is presented or updated.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 18, 2026, 12:11 PM
Security Audit — agent-trust-hub — migrate-pipeline