gsp-mechanics-systems-design

Pass

Audited by Gen Agent Trust Hub on May 3, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection.
  • Ingestion points: The skill ingests untrusted data in the form of game concepts provided by the user (SKILL.md).
  • Boundary markers: There are no explicit delimiters or instructions provided to the agent to disregard instructions that may be embedded within the source concepts.
  • Capability inventory: The agent is instructed to write documentation to the file system at paths like docs/game-studio/system-design.md and changes/<change-id>/design.md (SKILL.md).
  • Sanitization: No validation or sanitization of the input concepts is performed before processing.
  • [NO_CODE]: The skill consists solely of markdown-based instructions and references to templates; it contains no executable code or scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
May 3, 2026, 01:47 PM
Security Audit — agent-trust-hub — gsp-mechanics-systems-design