executing-plans
Pass
Audited by Gen Agent Trust Hub on Jun 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or unauthorized network operations were detected in the skill instructions.
- [INDIRECT_PROMPT_INJECTION]: The skill has a surface for indirect injection as it reads external plan files. Evidence: 1. Ingestion points: SKILL.md (Step 1: Load and Review Plan). 2. Boundary markers: Absent. 3. Capability inventory: General agent tasks including file writes and verifications. 4. Sanitization: Absent, but the skill mandates a critical review phase and human checkpoints, which serves as a primary safety mechanism.
Audit Metadata