context-engineering-review

Pass

Audited by Gen Agent Trust Hub on Aug 13, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze external data such as real request logs and system prompts. While this is an attack surface for indirect prompt injection, the skill lacks any capabilities (such as shell access, network requests, or file writes) that could be exploited if malicious instructions were present in the analyzed data.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: The skill instructions request users to provide actual request logs for auditing. While these logs may contain sensitive information, the skill does not define any tools or automated commands to transmit this data externally.
  • [NO_CODE]: The skill consists entirely of markdown-based instructions and methodology for the agent to follow. It does not include any executable code, shell scripts, or binary files that interact with the host system or network.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 13, 2026, 12:04 PM
Security Audit — agent-trust-hub — context-engineering-review