triage-error
Pass
Audited by Gen Agent Trust Hub on Aug 16, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill directs the agent to use shell and version control commands, including
grep,git log,git blame, andgit revert, to identify fault sites and implement mitigations. - [INDIRECT_PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it processes raw, untrusted data such as stack traces and production alerts.
- Ingestion points: Production errors, stack traces, and on-call alerts provided in the user input (SKILL.md).
- Boundary markers: None; the instructions do not provide delimiters or warnings to ignore instructions within the error data.
- Capability inventory: The agent uses file system search (
grep) and repository management tools (git) (SKILL.md). - Sanitization: None; the skill does not specify any validation or cleaning of the input logs.
Audit Metadata