analyze-project
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data by reading files from a user-specified repository, creating a potential surface for indirect prompt injection where malicious content in analyzed files could attempt to influence the agent.
- Ingestion points: The scripts/analyze_project.py script reads the content of files within the directory provided via the --repo argument and the context file from --analysis-context-json.
- Boundary markers: The script generates structured reports but does not include explicit instructions to the agent to ignore instructions embedded in the analyzed data.
- Capability inventory: The script is limited to local file system read and write operations; it lacks networking or shell execution capabilities.
- Sanitization: The script uses yaml.safe_load for parsing and json.dumps for output, ensuring structural safety.
Audit Metadata