license-engineer

Pass

Audited by Gen Agent Trust Hub on Jun 15, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill instructions are purely task-oriented, focusing on licensing architecture and compliance. There are no attempts to override agent behavior, bypass safety guidelines, or extract system prompts.
  • [DATA_EXFILTRATION]: No network operations, hardcoded credentials, or sensitive file path accesses were detected. The skill operates within a read-only context as specified in its metadata.
  • [REMOTE_CODE_EXECUTION]: The skill does not contain any commands to download or execute external scripts, packages, or binary files.
  • [COMMAND_EXECUTION]: There are no subprocess calls, shell commands, or dynamic execution patterns present in the instructions or metadata.
  • [INDIRECT_PROMPT_INJECTION]: While the skill is designed to process external data (dependency graphs and project context), it possesses no exploitable capabilities such as file-writing or network access. The risk of indirect injection is negligible as the output is restricted to informational reports and recommendations.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 15, 2026, 01:40 AM
Security Audit — agent-trust-hub — license-engineer