skills/jdforsythe/groove/research/Gen Agent Trust Hub

research

Pass

Audited by Gen Agent Trust Hub on Jun 18, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface as it processes the contents of docs/brainstorms/<workflow_id>.md to derive research queries and synthesize output. \n
  • Ingestion points: Reads the full content of the brainstorm document at docs/brainstorms/<workflow_id>.md in Step 2.\n
  • Boundary markers: Absent; there are no instructions to the agent to treat the document content as untrusted data or to ignore embedded instructions.\n
  • Capability inventory: Includes file system write access to docs/research/, codebase search capabilities, and the execution of the substrate-read tool.\n
  • Sanitization: Absent; the skill is instructed to adopt the vocabulary and terms found within the brainstorm document for its queries and reports.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 18, 2026, 04:08 AM
Security Audit — agent-trust-hub — research