804-regulations-eu-nis2
Pass
Audited by Gen Agent Trust Hub on Aug 3, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [SAFE]: The skill provides comprehensive guidance for regulatory compliance for Java systems. It relies on manual review workflows and reporting templates, avoiding any automated or high-risk command execution.
- [SAFE]: External references are limited to the official European Union law portal (eur-lex.europa.eu), which is an authoritative and safe source for the NIS2 Directive text.
- [PROMPT_INJECTION]: The skill defines a surface for processing external data including Java source code, configuration files, and system logs. 1. Ingestion points: Source code, infrastructure descriptors, and logs (SKILL.md Workflow). 2. Boundary markers: Explicit instructions to defer to legal owners and use 'NOT LEGAL ADVICE' disclaimers. 3. Capability inventory: Generates documentation and review reports; no automated shell execution or network requests identified. 4. Sanitization: Instructions to redact secrets, credentials, and personal data from evidence logs (Engineering Examples).
Audit Metadata