writing
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious patterns or security risks were identified. The instructions define a procedural co-authoring workflow using standard agent capabilities like
create_fileandstr_replaceto support document refinement and reader testing. - [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied context and feedback to generate files and perform edits without explicit boundary markers. This represents a standard functional vulnerability surface for document-drafting skills. 1. Ingestion points: User-provided meta-context, context dumps, and refinement feedback in SKILL.md. 2. Boundary markers: None present. 3. Capability inventory: Use of
create_fileandstr_replacefor file operations, and invocation of sub-agents for reader testing. 4. Sanitization: None present.
Audit Metadata