attio-prod-checklist
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill analyzes local repository content, including code and configuration files, which are external data sources that could potentially contain malicious instructions intended to mislead the agent. \n
- Ingestion points:
Read,Glob, andGreptools are used inSKILL.mdto process project files during the production review. \n - Capability inventory: The agent is granted
Write,Edit, andWebFetchcapabilities, which could be targets for manipulation via injected instructions. \n - Boundary markers: The skill does not explicitly define delimiters or instructions to ignore embedded prompts in the files it audits. \n
- Sanitization: No content filtering or sanitization is specified for the data ingested from the repository.
Audit Metadata