ss-write-spec
Pass
Audited by Gen Agent Trust Hub on Jul 13, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill downloads content from user-specified URLs (such as Confluence or Google Docs) to generate specifications. This is intended behavior for documentation automation.
- [PROMPT_INJECTION]: The skill has an indirect prompt injection surface as it processes external documentation. However, this is considered safe given the limited scope of the skill's output which is restricted to markdown files.
- Ingestion points: Hosted documents (URL) and local requirement files (SKILL.md).
- Boundary markers: None specified for the input data.
- Capability inventory: Filesystem writes limited to openspec/changes/ directory.
- Sanitization: Not specified in instructions.
Audit Metadata