team-live-ops

Pass

Audited by Gen Agent Trust Hub on Aug 24, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes project-specific data files that could contain instructions influencing agent behavior (Indirect Prompt Injection).
  • Ingestion points: The skill reads configuration and policy data from production/review-mode.txt, design/live-ops/economy-rules.md, and design/live-ops/ethics-policy.md (SKILL.md).
  • Boundary markers: Absent. Instructions do not define delimiters or specific warnings to ignore embedded instructions within these files.
  • Capability inventory: The skill has the ability to spawn subagents (Task), execute shell commands (Bash), and write files (Write, Edit, TodoWrite).
  • Sanitization: Absent. The skill does not describe any validation or sanitization steps for the ingested file content before it is processed by the orchestrator or passed to subagents.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 24, 2026, 04:18 PM
Security Audit — agent-trust-hub — team-live-ops