code-refactoring-refactor-clean

Pass

Audited by Gen Agent Trust Hub on Jun 18, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface by interpolating user-provided code and instructions via the $ARGUMENTS placeholder into the prompt. Malicious instructions embedded within the code being refactored could attempt to override the agent's behavior.
  • Ingestion points: Use of $ARGUMENTS in SKILL.md to receive user code.
  • Boundary markers: Absent; there are no delimiters or instructions to ignore embedded commands in the input data.
  • Capability inventory: The skill implies the agent will perform file analysis and modification (refactoring).
  • Sanitization: Absent; the skill does not instruct the agent to sanitize or validate the provided code before processing.
  • [NO_CODE]: The skill is composed entirely of natural language instructions and configuration metadata. It does not include any shell scripts, Python code, or other executable binaries.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 18, 2026, 03:00 AM
Security Audit — agent-trust-hub — code-refactoring-refactor-clean