agent-orchestration-multi-agent-optimize

Pass

Audited by Gen Agent Trust Hub on Apr 10, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill defines a surface for indirect prompt injection by interpolating user-provided $ARGUMENTS into the final instruction block without boundary markers or sanitization.
  • Ingestion points: The $ARGUMENTS variable at the end of SKILL.md.
  • Boundary markers: Absent; the skill does not use delimiters or instructions to disregard embedded commands within the user input.
  • Capability inventory: The skill is compatible with agents (claude-code, cursor) that typically possess full shell and file system access.
  • Sanitization: Absent; no validation or filtering is applied to the input before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 10, 2026, 01:34 PM