migration-engineering

Pass

Audited by Gen Agent Trust Hub on Sep 2, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill is entirely composed of documentation, guidelines, and Markdown templates for migration planning. It does not include any executable scripts, binaries, or instructions that trigger automated external commands.
  • [SAFE]: Analysis of all threat categories, including prompt injection, obfuscation, and data exfiltration, found no malicious patterns or vulnerabilities. The skill frontmatter explicitly states it is platform-agnostic with no runtime dependencies.
  • [INDIRECT_PROMPT_INJECTION]: The skill provides a surface for processing user-supplied migration requirements through its templates. However, the risk is mitigated by the skill's lack of functional capabilities. (1) Ingestion points: Migration plan and assessment templates (SKILL.md, templates/*.md). (2) Boundary markers: Absent. (3) Capability inventory: The skill is restricted to documentation output and has no file-write, network, or execution capabilities. (4) Sanitization: Not applicable given the documentation-only scope.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 2, 2026, 05:57 PM
Security Audit — agent-trust-hub — migration-engineering