reconcile-proposal

Pass

Audited by Gen Agent Trust Hub on Jul 16, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: Indirect Prompt Injection Surface. The skill reads and processes external text data which could contain instructions intended to influence the agent's behavior during reconciliation.
  • Ingestion points: The skill reads seed.md, decisions.md, and proposal.md from the project's docs/threads/ directory (SKILL.md Step 2).
  • Boundary markers: No specific boundary markers or instructions are employed to distinguish authoritative data from the skill's operational logic.
  • Capability inventory: The agent has the capability to modify the local proposal.md file and call the /emit-pending-decisions tool (SKILL.md Step 6).
  • Sanitization: There is no evidence of sanitization or content validation performed on the inputs retrieved from the authority files.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 16, 2026, 08:33 PM
Security Audit — agent-trust-hub — reconcile-proposal