team-memory-maintenance

Pass

Audited by Gen Agent Trust Hub on Jul 11, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [NO_CODE]: The skill consists entirely of markdown instructions and YAML configuration files. No executable scripts, binaries, or automated code components are included in the skill package.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines a workflow for processing external memory entries, which constitutes an attack surface for indirect prompt injection.
  • Ingestion points: The skill instructs the agent to read content from markdown files located in '.agents/project-memory/entries/'.
  • Boundary markers: No delimiters or specific 'ignore instructions' warnings are provided for the content within the memory entries.
  • Capability inventory: The skill involves managing a Git-backed data store and establishing relationships between entries.
  • Sanitization: There is no instruction or logic for validating or sanitizing the content of the memory entries being processed.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 11, 2026, 08:02 PM
Security Audit — agent-trust-hub — team-memory-maintenance