igrantio-schema-discovery

Pass

Audited by Gen Agent Trust Hub on Aug 9, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill guides the agent to fetch configuration and schema data from the 'decentralised-dataexchange/verifiable-data-registry' and 'webuild-consortium/webuild-attestation-rulebooks-catalog' GitHub repositories. These sources are referenced to support the skill's primary function of credential schema discovery.
  • [PROMPT_INJECTION]: The skill's workflow involving the ingestion of external rulebooks introduces an indirect prompt injection surface. Ingestion points: Skill instructions (Step 1 and Step 2) direct the agent to read external content from GitHub. Boundary markers: None provided; the agent is not instructed to isolate or ignore instructions within external data. Capability inventory: The agent is expected to process external attribute definitions to construct documents for credential issuance and verification. Sanitization: No validation or filtering mechanisms are specified for the external data.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 9, 2026, 01:57 PM
Security Audit — agent-trust-hub — igrantio-schema-discovery