contribute-docs

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill references the 'just docs' command in the checklist to verify documentation changes. This utilizes the 'just' command runner, a common tool for task automation in development environments.
  • [INDIRECT_PROMPT_INJECTION]: The skill involves reading and editing project documentation, which presents a potential surface for indirect prompt injection from untrusted file content. The evidence chain is as follows: (1) Ingestion points: The agent is instructed to read and update files such as README.md, docs/index.yml, and MDX documentation files. (2) Boundary markers: The skill does not define specific delimiters or instructions to ignore embedded content within the processed files. (3) Capability inventory: The agent has permissions to edit local files and execute shell commands like 'just docs'. (4) Sanitization: The skill does not specify validation or sanitization routines for the data processed from these files.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 03:01 AM
Security Audit — agent-trust-hub — contribute-docs