ensemble-solving
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied tasks and passes them to subagents through an orchestrator tool. This creates an attack surface where instructions embedded in the user's task could influence subagent behavior.
- Ingestion points: User's original task passed as a 'prompt' to the 'ensemble-orchestrator' tool in SKILL.md.
- Boundary markers: None identified in the tool invocation description.
- Capability inventory: Spawning and executing subagents (SKILL.md).
- Sanitization: None identified.
- [SAFE]: The skill's primary functionality is limited to orchestrating LLM reasoning pathways without accessing sensitive system resources, performing network operations to unknown domains, or executing arbitrary shell commands.
Audit Metadata