doc-generator

Pass

Audited by Gen Agent Trust Hub on Sep 25, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external source code and comments that are not under its direct control, creating a surface for indirect prompt injection.
  • Ingestion points: The skill reads local source code, comments, and API specifications during the information gathering phase as described in SKILL.md (Step 2).
  • Boundary markers: No explicit delimiters or instructions are provided to the agent to disregard potentially malicious instructions embedded within the files it reads.
  • Capability inventory: The skill utilizes Read, Write, Glob, and Grep tools as specified in the SKILL.md frontmatter.
  • Sanitization: There is no evidence of sanitization or filtering of content extracted from code files before it is used to generate documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 25, 2026, 08:58 AM
Security Audit — agent-trust-hub — doc-generator