wiki-researcher

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • Command Execution: The skill instructs the agent to run git remote get-url origin to resolve the repository's origin URL. This is a read-only command used specifically to construct valid source-code links for the user and is appropriate for the skill's stated purpose.
  • Indirect Prompt Injection Surface: Because this skill is designed to ingest and trace logic through external codebases, it is susceptible to indirect prompt injection if an analyzed file contains malicious instructions designed to subvert the agent's persona. This is an inherent risk for any code-analysis tool and is addressed here by strict requirements for evidence and multi-turn verification.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 02:12 AM
Security Audit — agent-trust-hub — wiki-researcher