plan-review
Pass
Audited by Gen Agent Trust Hub on Jul 4, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill processes external data via the $ARGUMENTS variable, which introduces an indirect prompt injection surface. A malicious document could attempt to influence the agent's behavior during the review process.
- Ingestion points: $ARGUMENTS placeholder in SKILL.md.
- Boundary markers: None present to distinguish instructions from input data.
- Capability inventory: No dangerous capabilities (such as network access, file system writes, or command execution) were found in the skill definition.
- Sanitization: No sanitization or filtering of the input content is implemented.
- [SAFE]: The skill does not contain any malicious code, obfuscated content, or unauthorized remote connections.
Audit Metadata