performance-workload-modeling
Pass
Audited by Gen Agent Trust Hub on Sep 4, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze external data such as production traffic, transaction mixes, and stakeholder concerns. While these are untrusted inputs, the prompt instructions do not specify the use of boundary markers or delimiters to isolate this data from the underlying instructions.
- Ingestion points: The 'Input' section in
prompts/performance-workload-modeling.mdexplicitly calls for reading production traffic, transaction mixes, concurrency data, and stakeholder concerns. - Boundary markers: The prompt instructions lack explicit requirements for the agent to use delimiters (e.g., XML tags or block markers) when handling user-supplied data.
- Capability inventory: The skill does not define any executable tools, scripts, or shell commands. It operates strictly within the text generation and reasoning context.
- Sanitization: There are no instructions for sanitizing, escaping, or filtering the ingested data.
- [NO_CODE]: The skill does not include any executable code, scripts, or binaries. Its functionality is limited to prompt-based instructions and metadata configuration.
Audit Metadata