to-spec
Pass
Audited by Gen Agent Trust Hub on Jul 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a standard utility for technical documentation and synthesis. It follows a structured process and does not exhibit any malicious patterns such as obfuscation, credential theft, or unauthorized command execution.\n- [PROMPT_INJECTION]: The skill exhibits a surface for indirect prompt injection because it processes untrusted conversation data and codebase content to generate entries published to an external issue tracker. This is an inherent part of its design for documentation automation.\n
- Ingestion points: current conversation context and repository exploration (SKILL.md).\n
- Boundary markers: No explicit delimiters are used to wrap external content within the spec template.\n
- Capability inventory: Repository read access and issue tracker publication capabilities.\n
- Sanitization: No explicit sanitization or validation of the processed data is defined in the instructions.
Audit Metadata