jackin-brainstorm
Pass
Audited by Gen Agent Trust Hub on Aug 13, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted content from roadmap files and research dossiers, creating a potential vector for indirect prompt injection.
- Ingestion points: The agent reads roadmap files located at
docs/content/docs/roadmap/<slug>.mdxand content from linked research dossiers or the output of thedeep-researchtool. - Boundary markers: The instructions do not define specific delimiters or instructions for the agent to separate external data from its primary operating directives.
- Capability inventory: The skill is authorized to write to the local filesystem (updating
.mdxfiles) and perform network operations viagit commitandgit pushcommands. - Sanitization: There is no evidence of content sanitization or validation before ingested data is incorporated into the design document and pushed to the repository.
Audit Metadata