abrege
Pass
Audited by Gen Agent Trust Hub on Aug 13, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection as it is designed to ingest and process untrusted external text provided by the user. \n
- Ingestion points: The skill accepts various professional documents (emails, reports, CVs) for editing as defined in SKILL.md. \n
- Boundary markers: The instructions lack explicit delimiters to separate user-provided content from agent instructions and do not include directives to ignore embedded commands. \n
- Capability inventory: The skill utilizes the Read, Write, Edit, Grep, and Glob tools (specified in the allowed-tools section of SKILL.md). \n
- Sanitization: There are no instructions for the agent to validate or sanitize the input text for malicious commands prior to processing.
Audit Metadata