spec-orchestrator
Pass
Audited by Gen Agent Trust Hub on Apr 21, 2026
Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The skill uses extremely assertive and mandatory language (e.g., 'ABSOLUTELY MUST', 'not negotiable', 'not optional') to override the agent's autonomous decision-making regarding tool usage. It explicitly instructs the agent to ignore any 'rationalization' or context-based justification for skipping the defined workflow, which is a behavioral override pattern used for process discipline.- [COMMAND_EXECUTION]: The skill serves as a central orchestrator that routes user tasks to a specific sequence of other tools (e.g., spec-research, spec-plan, spec-implement). It dictates the logical flow of execution based on user-provided task descriptions, although it does not execute arbitrary shell commands directly.
Audit Metadata