Desktop WinUI 3
Warn
Audited by Gen Agent Trust Hub on Jul 8, 2026
Risk Level: MEDIUMPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill implements "context stuffing" by including approximately 1,200 redundant sections across eight reference documents (e.g.,
references/architecture-patterns.md,references/code-organization.md, etc.).\n - Evidence: Each document contains 150 sections of repetitive technical jargon, such as suggestions to use Linux-specific system calls (
epoll_wait,io_uring) for Windows development. These files total an estimated 600,000+ characters of filler text.\n - Impact: This volume of tokens saturates the agent's context window, which can cause system instructions and security constraints to be dropped from the model's active memory. This potentially leads to the bypass of established safety protocols and a loss of instruction tracking.
Audit Metadata