erpnext-code-validator

Pass

Audited by Gen Agent Trust Hub on Mar 16, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill provides a surface for indirect prompt injection as its primary function is to process and analyze code provided by users.
  • Ingestion points: The agent is instructed to ingest and review code snippets provided during user interactions as described in SKILL.md.
  • Boundary markers: No explicit delimiters or boundary markers are defined in the instructions to isolate user-provided code from the agent's core instructions.
  • Capability inventory: The skill is strictly instructional and does not include any tools or capabilities for executing code, making network requests, or accessing the file system.
  • Sanitization: No input sanitization or filtering logic is prescribed for the code snippets being analyzed.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 16, 2026, 09:35 PM