pm-launch-plan
Pass
Audited by Gen Agent Trust Hub on Jul 19, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill identifies as having an indirect prompt injection surface.
- Ingestion points: User input provided during the interview process (SKILL.md).
- Boundary markers: The skill does not implement boundary markers or instructions to ignore embedded commands within user responses.
- Capability inventory: The skill is allowed to use Bash, Write, and Edit tools, creating a capability tier that could be exploited via malicious input (SKILL.md).
- Sanitization: No input sanitization or validation mechanisms are described.
Audit Metadata