Desktop WinUI 3

Warn

Audited by Gen Agent Trust Hub on Jul 8, 2026

Risk Level: MEDIUMPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill implements "context stuffing" by including approximately 1,200 redundant sections across eight reference documents (e.g., references/architecture-patterns.md, references/code-organization.md, etc.).\n
  • Evidence: Each document contains 150 sections of repetitive technical jargon, such as suggestions to use Linux-specific system calls (epoll_wait, io_uring) for Windows development. These files total an estimated 600,000+ characters of filler text.\n
  • Impact: This volume of tokens saturates the agent's context window, which can cause system instructions and security constraints to be dropped from the model's active memory. This potentially leads to the bypass of established safety protocols and a loss of instruction tracking.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 8, 2026, 12:24 PM
Security Audit — agent-trust-hub — Desktop WinUI 3