implement

Pass

Audited by Gen Agent Trust Hub on Aug 15, 2026

Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests external data from specifications and tickets to perform implementation tasks, which can be used to influence agent behavior. * Ingestion points: User-provided specifications and ticket descriptions. * Boundary markers: No explicit delimiting or instructions to ignore embedded commands are present in the skill body. * Capability inventory: The skill allows for file modifications, command execution for testing, and git commits. * Sanitization: The skill does not describe any specific sanitization or validation logic for the input text, though platform-level safeguards like disabled model invocation are active.
  • [COMMAND_EXECUTION]: The instructions require the agent to execute typechecking and test runners. These are legitimate development capabilities provided within the context of implementation but represent a high-privilege execution environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 15, 2026, 05:53 PM
Security Audit — agent-trust-hub — implement