edit
Pass
Audited by Gen Agent Trust Hub on Jun 22, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or unauthorized credential access were detected in the skill instructions or metadata.- [INDIRECT_PROMPT_INJECTION]: The skill processes arbitrary manuscript text which constitutes an untrusted data ingestion surface. It has the capability to write findings to local files and spawn sub-tasks using the Task tool.
- Ingestion points: Manuscript chapters processed during editing (SKILL.md).
- Boundary markers: Absent; the instructions do not specify delimiters or markers to distinguish manuscript content from instructions.
- Capability inventory: The skill uses a Task tool to spawn sub-agents and writes findings to progress.md.
- Sanitization: Absent; there is no mention of filtering or escaping manuscript content before processing.
Audit Metadata