business-workflows
Pass
Audited by Gen Agent Trust Hub on Jun 22, 2026
Risk Level: SAFE
Full Analysis
- File System Interaction: The skill reads source code from the local workspace to identify business logic and writes documentation to a predefined path (
.github/modernize/assessment/engines/facts/business-workflows.md). This behavior is consistent with the skill's primary function of documentation generation. - Processing Untrusted Content: This skill processes untrusted data (source code) within the local environment. While this theoretically creates an indirect prompt injection surface, the skill's capabilities are limited to generating descriptive text and diagrams, presenting a low-risk profile for this type of activity.
- Safe Mermaid Diagram Generation: The skill includes specific instructions to ensure Mermaid diagram syntax is correct and avoids features that could lead to parsing errors, demonstrating a commitment to reliable output without executing dangerous code.
Audit Metadata