inspect-invariants

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted content from architectural documentation and code changes. Ingestion points include docs/architecture/INDEX.md and code diffs. While it lacks explicit boundary markers or sanitization for these inputs, it also lacks any exploitable capabilities such as network access or shell execution, neutralizing the threat.
  • [SAFE]: The skill is purely instructional and advisory, focusing on semantic judgment of architectural invariants without performing sensitive operations. No remote dependencies, obfuscation, or persistence mechanisms were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 11:40 AM
Security Audit — agent-trust-hub — inspect-invariants