generate-tasks
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes shell commands to detect environment configurations and run project tests. Evidence in
TEST_COMMANDS.mdincludes the use of standard CLI tools likejq,grep, andtestto inspect local project files such aspackage.json,Cargo.toml, andpyproject.toml. It also invokes standard test runners likenpm test,cargo test, andpytest. - [DYNAMIC_EXECUTION]: The skill identifies and executes commands defined within project metadata. Specifically,
TEST_COMMANDS.mdfacilitates extracting thetestscript frompackage.jsonto be executed by the agent. While this involves running variable command strings, it is a standard behavior for automated developer tools. - [INDIRECT_PROMPT_INJECTION]: The skill processes external requirements documents (PRDs) to generate its output, which represents a potential injection surface.
- Ingestion points: The 'Requirements Analysis' workflow in
SKILL.mdingests feature descriptions and PRD files. - Boundary markers: The skill does not currently specify the use of delimiters or 'ignore' instructions for the processed requirement data.
- Capability inventory: The skill possesses capabilities for shell command execution (via test runners) and file system writes (generating markdown task lists).
- Sanitization: No explicit sanitization or validation logic is defined for the input requirement text.
Audit Metadata