pii-sanitizer
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted input data which could contain malicious instructions designed to influence the agent's behavior during processing.
- Ingestion points: The
input_dataparameter inskill.yamlis the primary entry point for external content. - Boundary markers: The configuration does not define specific delimiters or instructions to the agent to treat the input as pure data only.
- Capability inventory: No tool invocations, shell commands, or network operations are present in the provided skill files.
- Sanitization: While the skill is designed to redact PII, there is no mention of sanitization for prompt injection patterns or control characters.
- [NO_CODE]: The provided files (
SKILL.mdandskill.yaml) consist entirely of metadata, documentation, and interface definitions. No executable source code or scripts were included in the skill package.
Audit Metadata