moonshine-components

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill architecture is vulnerable to instructions embedded within the data it processes.
  • Ingestion points: Untrusted data is ingested from user-provided $ARGUMENTS and the contents of the .guidelines/blade-components.md file.
  • Boundary markers: The prompt does not utilize delimiters or specific instructions to isolate user-supplied content from agent instructions.
  • Capability inventory: The skill is granted access to potentially dangerous tools including Bash, Write, and Edit.
  • Sanitization: No input validation or sanitization routines are specified for handling the ingested external data.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 10:46 AM
Security Audit — agent-trust-hub — moonshine-components