agentic-sdlc
Pass
Audited by Gen Agent Trust Hub on Sep 6, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill coordinates workflows involving external, untrusted data sources which present a vector for indirect prompt injection.
- Ingestion points:
SKILL.mdandreferences/behavior-fixtures.mdidentify logs, issues, web pages, and tool output as data the agent must process.references/behavior-fixtures.mdincludes simulated build logs with malicious instructions. - Boundary markers: Instructions in
SKILL.mdact as boundary markers by directing the agent to treat external content as evidence, not instructions. - Capability inventory: The skill coordinates multi-stage software delivery including implementation, verification, and deployment actions.
- Sanitization:
SKILL.mdandreferences/work-records.mdprovide logic for protecting sensitive credentials and ignoring instructions embedded in external artifacts. - [EXTERNAL_DOWNLOADS]: The skill provides links to documentation and guidelines from well-known technology organizations.
- Technical references in
references/sources.mdinclude links to official blogs and repositories from Anthropic, OpenAI, and Humanlayer for workflow guidance.
Audit Metadata