control-tower-design
Pass
Audited by Gen Agent Trust Hub on Mar 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a technical guide and code template for supply chain management with no evidence of malicious intent.
- [CREDENTIALS_UNSAFE]: Documentation examples use safe string placeholders for sensitive API parameters.
- [EXTERNAL_DOWNLOADS]: Mentions of external software and standard libraries are for educational and architectural purposes and do not trigger unauthorized code execution.
- [PROMPT_INJECTION]: While the skill ingests external data for processing, the lack of dangerous system-level capabilities prevents potential indirect injection attacks from being exploitable. Ingestion points:
ingest_ordersandingest_shipmentsin SKILL.md. Boundary markers: None present. Capability inventory: No file system access or subprocess calls. Sanitization: Basic date validation.
Audit Metadata