agent-readiness-report
Pass
Audited by Gen Agent Trust Hub on Jun 24, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious patterns or security vulnerabilities were detected. The skill uses standard shell commands to audit file presence and project structure.
- [PROMPT_INJECTION]: The skill presents a surface for indirect prompt injection as it requires the agent to read and evaluate external repository files which could contain misleading instructions. This risk is inherent to the skill's primary function of repository auditing.
- Ingestion points: Manual inspection of repository documentation (README, CONTRIBUTING, etc.) and analysis of scanner script output.
- Boundary markers: Absent. The agent relies on its internal safety guidelines when processing content from the target repository.
- Capability inventory: Local file system read access and shell script execution.
- Sanitization: None. The skill assumes the agent will critically evaluate the content of the files it reads.
Audit Metadata