sota-architecture
Pass
Audited by Gen Agent Trust Hub on Aug 5, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists of Markdown files providing educational and procedural guidance for software architecture. No malicious code or dangerous automation was found within the skill's own structure.\n- [PROMPT_INJECTION]: The instructions are purpose-oriented and do not contain attempts to bypass safety filters or override system prompts. All architectural rules are presented as domain-specific guidelines.\n- [DATA_EXFILTRATION]: No evidence of sensitive data access or exfiltration. The skill does not perform network requests or access private user files. External references point to well-known infrastructure and protocols (NATS, AMQP, Kafka).\n- [REMOTE_CODE_EXECUTION]: The files do not contain commands for downloading or executing remote code. Mentions of external tools such as dependency-cruiser or nats-server are for informational purposes within the architectural rules.\n- [INDIRECT_PROMPT_INJECTION]: The skill specifies an audit mode where the agent reviews existing code and designs. This creates a theoretical ingestion point for indirect prompt injection from audited content, though the risk is handled within safe parameters.\n
- Ingestion points: Review of existing code or designs in AUDIT mode (SKILL.md).\n
- Boundary markers: A specific findings report format is provided, but no explicit instructions to ignore data-embedded commands are included.\n
- Capability inventory: The agent's capabilities in this context are limited to text-based reporting; no shell execution or network writes are triggered.\n
- Sanitization: None present.
Audit Metadata