ensemble-solving

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied tasks and passes them to subagents through an orchestrator tool. This creates an attack surface where instructions embedded in the user's task could influence subagent behavior.
  • Ingestion points: User's original task passed as a 'prompt' to the 'ensemble-orchestrator' tool in SKILL.md.
  • Boundary markers: None identified in the tool invocation description.
  • Capability inventory: Spawning and executing subagents (SKILL.md).
  • Sanitization: None identified.
  • [SAFE]: The skill's primary functionality is limited to orchestrating LLM reasoning pathways without accessing sensitive system resources, performing network operations to unknown domains, or executing arbitrary shell commands.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 01:23 AM
Security Audit — agent-trust-hub — ensemble-solving