speckit-feature-orchestrator

Pass

Audited by Gen Agent Trust Hub on Apr 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is primarily instructional and template-based, defining a chief-architect management workflow for Speckit. It does not contain executable code, scripts, or network operations.
  • [PROMPT_INJECTION]: The skill contains a standard surface for indirect prompt injection as it interpolates user-supplied feature descriptions into prompts for subagents. However, it implements a sequential validation rubric to mitigate risks.
  • Ingestion points: User requests and repository context are ingested via intake templates.
  • Boundary markers: Employs markdown structure and template placeholders to delimit context.
  • Capability inventory: Coordinates subagents to perform repository modifications via other Speckit-related skills.
  • Sanitization: Employs a validation rubric to check for unsafe or contradictory instructions after every phase.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 27, 2026, 03:26 PM