moonshine-components
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill architecture is vulnerable to instructions embedded within the data it processes.
- Ingestion points: Untrusted data is ingested from user-provided
$ARGUMENTSand the contents of the.guidelines/blade-components.mdfile. - Boundary markers: The prompt does not utilize delimiters or specific instructions to isolate user-supplied content from agent instructions.
- Capability inventory: The skill is granted access to potentially dangerous tools including
Bash,Write, andEdit. - Sanitization: No input validation or sanitization routines are specified for handling the ingested external data.
Audit Metadata