spree-data-model

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill uses tools to fetch external documentation from spreecommerce.org and GitHub, which introduces a data ingestion surface.
  • Ingestion points: Official Spree Commerce documentation and GitHub source code.
  • Boundary markers: Absent.
  • Capability inventory: The skill utilizes tools such as Bash, Write, and Edit.
  • Sanitization: None specified. Given the resources are official project documentation, this represents standard usage and is categorized as safe.
  • [SAFE]: No malicious behaviors, such as prompt injection, credential exfiltration, or obfuscation, were identified within the skill's instructions or configuration.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 06:33 PM