Orphan Files Cleanup Monorepo

Pass

Audited by Gen Agent Trust Hub on Jul 17, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill creates an indirect prompt injection surface by requiring the agent to analyze untrusted monorepo workspace content and project configurations to identify files for deletion. \n- Ingestion points: The agent ingests imports, build targets, test targets, and workspace files as defined in SKILL.md. \n- Boundary markers: There are no instructions for using delimiters or explicit warnings to the agent to ignore instructions embedded within the codebase being analyzed. \n- Capability inventory: The skill grants the agent the capability to delete files ('Remove dead files safely'). \n- Sanitization: The skill does not provide any instructions for sanitizing, escaping, or validating the external content retrieved from the workspace.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 17, 2026, 12:15 PM
Security Audit — agent-trust-hub — Orphan Files Cleanup Monorepo