inspect-invariants
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted content from architectural documentation and code changes. Ingestion points include
docs/architecture/INDEX.mdand code diffs. While it lacks explicit boundary markers or sanitization for these inputs, it also lacks any exploitable capabilities such as network access or shell execution, neutralizing the threat. - [SAFE]: The skill is purely instructional and advisory, focusing on semantic judgment of architectural invariants without performing sensitive operations. No remote dependencies, obfuscation, or persistence mechanisms were detected.
Audit Metadata