implement
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection through the processing of untrusted external data.
- Ingestion points: The skill takes input from a 'spec ou conjunto de tickets' (referenced in SKILL.md).
- Boundary markers: There are no explicit delimiters or instructions to ignore embedded commands within the input data.
- Capability inventory: The agent is instructed to perform implementation work (file writing) and run shell commands for typechecking and test suites (referenced in SKILL.md).
- Sanitization: No input validation or sanitization is specified for the ingested content.
- [COMMAND_EXECUTION]: The skill explicitly instructs the agent to run typechecking and test suites. This capability could be exploited if malicious instructions in the processed specifications lead the agent to execute unintended system commands.
Audit Metadata