audit-backend-architecture
Pass
Audited by Gen Agent Trust Hub on Aug 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is strictly instructional and provides a framework for performing architectural audits without introducing external code, scripts, or dependencies.\n- [SAFE]: No hardcoded credentials, sensitive file access (like SSH or AWS keys), or data exfiltration attempts were found. The search patterns target standard application configuration files for topology detection.\n- [SAFE]: No base64, homoglyph, or other obfuscation techniques are present in the skill body or references.\n- [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted code from the repository, creating a surface for indirect prompt injection. However, this is inherent to its diagnostic function and is mitigated by its read-only nature.\n
- Ingestion points: Repository files searched using
rgandfdcommands specified inSKILL.mdandreferences/patterns.md.\n - Boundary markers: Explicit instructions require the agent to cite
file:lineevidence and follow a "fit before presence" logic to justify findings.\n - Capability inventory: The skill is explicitly read-only and lacks capabilities for file writing, network exfiltration, or command execution beyond diagnostic searches.\n
- Sanitization: No specific sanitization of file content is defined, though the diagnostic context limits the impact of potential injection.
Audit Metadata