writing-beats

Pass

Audited by Gen Agent Trust Hub on Sep 11, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted content from markdown raw materials and existing disk files.
  • Ingestion points: Processes markdown raw material and reads the article from disk (SKILL.md).
  • Boundary markers: No delimiters or safety instructions are implemented to prevent the agent from following instructions embedded in the raw material.
  • Capability inventory: The skill possesses file system read and append capabilities (SKILL.md).
  • Sanitization: The input data is not sanitized or validated for malicious prompts.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 11, 2026, 02:01 AM
Security Audit — agent-trust-hub — writing-beats