analyze-project

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data by reading files from a user-specified repository, creating a potential surface for indirect prompt injection where malicious content in analyzed files could attempt to influence the agent.
  • Ingestion points: The scripts/analyze_project.py script reads the content of files within the directory provided via the --repo argument and the context file from --analysis-context-json.
  • Boundary markers: The script generates structured reports but does not include explicit instructions to the agent to ignore instructions embedded in the analyzed data.
  • Capability inventory: The script is limited to local file system read and write operations; it lacks networking or shell execution capabilities.
  • Sanitization: The script uses yaml.safe_load for parsing and json.dumps for output, ensuring structural safety.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 05:18 PM