data-schema-knowledge-modeling

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely instructional and focuses on generating data models and documentation. It does not include any executable code or dependencies.
  • [INDIRECT_PROMPT_INJECTION]: The skill possesses a standard attack surface for indirect prompt injection as it ingests user-provided domain requirements to generate schema documentation.
  • Ingestion points: User-provided domain descriptions and use cases (SKILL.md, Step 1).
  • Boundary markers: None explicitly defined for user input or the generated file.
  • Capability inventory: The skill only performs file-writing (generating data-schema-knowledge-modeling.md) and does not involve subprocess calls, execution, or network operations.
  • Sanitization: No specific sanitization or validation of the user input content is mentioned beyond structural checks. Despite this surface, the lack of executable capabilities makes the risk negligible.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 11:27 PM
Security Audit — agent-trust-hub — data-schema-knowledge-modeling