implement-spec

Pass

Audited by Gen Agent Trust Hub on Sep 30, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external specifications and tickets to drive code implementation, creating a surface for indirect instructions to influence agent actions.
  • Ingestion points: SKILL.md (Step 1) indicates the agent reads external specs and tickets to understand a task graph.
  • Boundary markers: The instructions do not define clear delimiters or warnings for the agent to ignore instructions embedded within the spec/tickets.
  • Capability inventory: SKILL.md (Steps 3-9) lists capabilities including creating branches, managing worktrees, merging code, and triggering code reviews.
  • Sanitization: No sanitization or validation of the input content is described to mitigate malicious instructions in the source data.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 30, 2026, 10:23 AM
Security Audit — agent-trust-hub — implement-spec