stitch
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill acts as a proxy, passing untrusted user input from command-line arguments directly to a secondary tool for processing.\n- Ingestion points: User-supplied arguments for 'operation', 'scope', and 'task context' defined in the instructions of SKILL.md.\n- Boundary markers: The skill does not employ delimiters or explicit instructions to prevent the agent from being influenced by malicious instructions embedded within the scope or context strings.\n- Capability inventory: The skill executes tasks by invoking the 'stitch-to-code' tool/skill workflow.\n- Sanitization: There is no evidence of sanitization, validation, or escaping of the user-provided data before it is passed to the delegated tool.
Audit Metadata