implement-spec
Pass
Audited by Gen Agent Trust Hub on Sep 30, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes external specifications and tickets to drive code implementation, creating a surface for indirect instructions to influence agent actions.
- Ingestion points: SKILL.md (Step 1) indicates the agent reads external specs and tickets to understand a task graph.
- Boundary markers: The instructions do not define clear delimiters or warnings for the agent to ignore instructions embedded within the spec/tickets.
- Capability inventory: SKILL.md (Steps 3-9) lists capabilities including creating branches, managing worktrees, merging code, and triggering code reviews.
- Sanitization: No sanitization or validation of the input content is described to mitigate malicious instructions in the source data.
Audit Metadata