wachi-validacion-usuario

Pass

Audited by Gen Agent Trust Hub on Sep 6, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process untrusted external data, specifically transcripts, notes, and audio from user validation sessions.
  • Ingestion points: In Fase 1 and Fase 2, the skill is instructed to extract findings and decisions from session recordings, transcriptions, and notes.
  • Boundary markers: Absent. There are no explicit instructions or delimiters provided to ensure the agent ignores potential commands or instructional text embedded within the validation data.
  • Capability inventory: The skill utilizes tools with significant impact on the project environment, including transition_ficha (status changes), eliminar_ficha (record deletion), and crear_ticket (task creation).
  • Sanitization: Absent. The instructions do not specify any validation or sanitization steps to filter out malicious instructions hidden within the user-provided content.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 6, 2026, 04:39 PM
Security Audit — agent-trust-hub — wachi-validacion-usuario