implement
Pass
Audited by Gen Agent Trust Hub on Aug 15, 2026
Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests external data from specifications and tickets to perform implementation tasks, which can be used to influence agent behavior. * Ingestion points: User-provided specifications and ticket descriptions. * Boundary markers: No explicit delimiting or instructions to ignore embedded commands are present in the skill body. * Capability inventory: The skill allows for file modifications, command execution for testing, and git commits. * Sanitization: The skill does not describe any specific sanitization or validation logic for the input text, though platform-level safeguards like disabled model invocation are active.
- [COMMAND_EXECUTION]: The instructions require the agent to execute typechecking and test runners. These are legitimate development capabilities provided within the context of implementation but represent a high-privilege execution environment.
Audit Metadata