spree-data-model
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill uses tools to fetch external documentation from spreecommerce.org and GitHub, which introduces a data ingestion surface.
- Ingestion points: Official Spree Commerce documentation and GitHub source code.
- Boundary markers: Absent.
- Capability inventory: The skill utilizes tools such as Bash, Write, and Edit.
- Sanitization: None specified. Given the resources are official project documentation, this represents standard usage and is categorized as safe.
- [SAFE]: No malicious behaviors, such as prompt injection, credential exfiltration, or obfuscation, were identified within the skill's instructions or configuration.
Audit Metadata