wiki-researcher
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- Command Execution: The skill instructs the agent to run
git remote get-url originto resolve the repository's origin URL. This is a read-only command used specifically to construct valid source-code links for the user and is appropriate for the skill's stated purpose. - Indirect Prompt Injection Surface: Because this skill is designed to ingest and trace logic through external codebases, it is susceptible to indirect prompt injection if an analyzed file contains malicious instructions designed to subvert the agent's persona. This is an inherent risk for any code-analysis tool and is addressed here by strict requirements for evidence and multi-turn verification.
Audit Metadata