triage-error

Pass

Audited by Gen Agent Trust Hub on Aug 16, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill directs the agent to use shell and version control commands, including grep, git log, git blame, and git revert, to identify fault sites and implement mitigations.
  • [INDIRECT_PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it processes raw, untrusted data such as stack traces and production alerts.
  • Ingestion points: Production errors, stack traces, and on-call alerts provided in the user input (SKILL.md).
  • Boundary markers: None; the instructions do not provide delimiters or warnings to ignore instructions within the error data.
  • Capability inventory: The agent uses file system search (grep) and repository management tools (git) (SKILL.md).
  • Sanitization: None; the skill does not specify any validation or cleaning of the input logs.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 16, 2026, 11:13 AM
Security Audit — agent-trust-hub — triage-error