code-refactoring-refactor-clean
Pass
Audited by Gen Agent Trust Hub on Jun 18, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface by interpolating user-provided code and instructions via the
$ARGUMENTSplaceholder into the prompt. Malicious instructions embedded within the code being refactored could attempt to override the agent's behavior. - Ingestion points: Use of
$ARGUMENTSinSKILL.mdto receive user code. - Boundary markers: Absent; there are no delimiters or instructions to ignore embedded commands in the input data.
- Capability inventory: The skill implies the agent will perform file analysis and modification (refactoring).
- Sanitization: Absent; the skill does not instruct the agent to sanitize or validate the provided code before processing.
- [NO_CODE]: The skill is composed entirely of natural language instructions and configuration metadata. It does not include any shell scripts, Python code, or other executable binaries.
Audit Metadata