writing-beats
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted content from markdown raw materials and existing disk files.
- Ingestion points: Processes markdown raw material and reads the article from disk (SKILL.md).
- Boundary markers: No delimiters or safety instructions are implemented to prevent the agent from following instructions embedded in the raw material.
- Capability inventory: The skill possesses file system read and append capabilities (SKILL.md).
- Sanitization: The input data is not sanitized or validated for malicious prompts.
Audit Metadata