software-lifecycle

Pass

Audited by Gen Agent Trust Hub on Aug 25, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill primarily provides structural guidance and per-folder rules for managing engineering documents like RFCs, ADRs, and implementation specs. No unauthorized network operations, credential access, or malicious code execution patterns were found.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines agent behaviors that respond to document states (e.g., scanning existing records for duplicates or surfacing stale drafts). This creates a surface where external content in markdown files is processed by the agent. However, these behaviors are standard for documentation management, and no exploitable capability chain was identified.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 25, 2026, 02:29 PM
Security Audit — agent-trust-hub — software-lifecycle