parallel-review-disposition-schema

Pass

Audited by Gen Agent Trust Hub on Aug 31, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to facilitate the processing of untrusted data in the form of security audit findings by parallel agents.
  • Ingestion points: Findings and evidence are passed to multiple parallel 'council seats' for review (SKILL.md, gotchas.md).
  • Boundary markers: The methodology mandates a fixed decision vocabulary (enum) and structured output blocks to isolate finding processing (SKILL.md).
  • Capability inventory: Verifier agents are instructed to perform 'Ground Contact' by reading artifacts (file:line, memory dir) using provided tools (ADVERSARIAL-VERIFY-SEAT.md).
  • Sanitization: The skill mitigates injection risks by requiring an 'Adversarial-Verify' posture, which forces agents to independently refute rather than blindly confirm findings (ADVERSARIAL-VERIFY-SEAT.md).
  • [SAFE]: No other threats were identified. The skill does not contain executable scripts, remote code execution patterns, or hardcoded credentials. All external URL references target the author's own GitHub repositories, representing legitimate vendor documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 31, 2026, 09:18 PM
Security Audit — agent-trust-hub — parallel-review-disposition-schema