domain-modeling
Pass
Audited by Gen Agent Trust Hub on Aug 29, 2026
Risk Level: SAFENO_CODEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill provides structured guidance for project terminology and decision-making records. It does not contain any scripts, command execution instructions, or network-related functionality.
- [INDIRECT_PROMPT_INJECTION]: The skill interacts with external project data by reading and writing files such as CONTEXT.md and architectural decision records (ADRs). Ingestion points include these documentation files located in the repository (e.g., CONTEXT.md, CONTEXT-MAP.md, and docs/adr/*.md). While there are no explicit boundary markers or sanitization steps mentioned, the capability inventory is strictly limited to markdown text modification. The absence of dangerous tools, network exfiltration, or system command execution renders the surface for indirect prompt injection safe.
Audit Metadata