jackin-propose

Pass

Audited by Gen Agent Trust Hub on Aug 13, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes cargo xtask to scaffold new roadmap items and validate sidebar entries. This executes code internal to the jackin-project repository to manage project metadata and file organization.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied ideas and research summaries (Ingestion points: SKILL.md arguments) and interpolates them into roadmap documents without explicit boundary markers (Sanitization: Absent). The agent possesses file-writing and repository-management capabilities (Capability inventory: cargo, git, create-pr) to commit this content.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 13, 2026, 05:10 AM
Security Audit — agent-trust-hub — jackin-propose