data-contract

Pass

Audited by Gen Agent Trust Hub on Jun 28, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied data such as asset descriptions and schemas to generate documentation. While it lacks explicit boundary markers to prevent the agent from following instructions embedded in that data, the skill has no dangerous capabilities (no file access, network operations, or command execution), rendering the risk negligible.
  • Ingestion points: User-provided inputs (asset, producer, schema, quality expectations) defined in SKILL.md.
  • Boundary markers: Absent.
  • Capability inventory: None. The skill's output is limited to markdown text generation.
  • Sanitization: Absent.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 28, 2026, 03:25 PM
Security Audit — agent-trust-hub — data-contract