windsurf-dockerfile-generation

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill facilitates the analysis of local application files to generate Docker configuration. This represents a vulnerability surface where malicious code within a user's project could theoretically attempt to influence the agent's output.
  • Ingestion points: Application analysis referenced in SKILL.md and implementation.md.
  • Boundary markers: Absent.
  • Capability inventory: File system access (Read, Write, Edit) and command execution (Bash) are enabled tools for the agent.
  • Sanitization: Not specified in the skill instructions.
  • [SAFE]: No malicious patterns or security risks were identified. The skill is entirely documentation-based, providing procedural guidance without introducing external dependencies or sensitive data access patterns. All referenced domains (intentsolutions.io, jeremylongshore.com, tonsofskills.com) are associated with the author.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 03:48 AM
Security Audit — agent-trust-hub — windsurf-dockerfile-generation