writing-review
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests and processes content from external files provided via the
$ARGUMENTSvariable, creating a surface for indirect prompt injection. \n - Ingestion points: Text files matched by
$ARGUMENTSinSKILL.md. \n - Boundary markers: The instructions do not define specific delimiters or warnings to ignore instructions within the reviewed content. \n
- Capability inventory: The skill is limited to reading files and reporting findings; it lacks file-writing, network communication, or code execution capabilities. \n
- Sanitization: There is no evidence of content sanitization or filtering before the agent processes the input documentation.\n- [SAFE]: The skill references writing guidelines from a well-known service's repository, which is consistent with its stated purpose.
Audit Metadata