plan-review

Pass

Audited by Gen Agent Trust Hub on Jul 4, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes external data via the $ARGUMENTS variable, which introduces an indirect prompt injection surface. A malicious document could attempt to influence the agent's behavior during the review process.
  • Ingestion points: $ARGUMENTS placeholder in SKILL.md.
  • Boundary markers: None present to distinguish instructions from input data.
  • Capability inventory: No dangerous capabilities (such as network access, file system writes, or command execution) were found in the skill definition.
  • Sanitization: No sanitization or filtering of the input content is implemented.
  • [SAFE]: The skill does not contain any malicious code, obfuscated content, or unauthorized remote connections.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 4, 2026, 06:53 PM
Security Audit — agent-trust-hub — plan-review