ai-security-verification

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill serves as a procedural framework for conducting AI security assessments. The YAML frontmatter accurately describes the skill's purpose, and the content aligns with established OWASP safety standards. No malicious patterns such as remote code execution, persistence, or credential harvesting were detected.
  • [INDIRECT_PROMPT_INJECTION]: The skill possesses a data ingestion surface intended for auditing external AI applications. Given its primary purpose as a security tool, this surface is expected and appropriately scoped.
  • Ingestion points: The instructions guide the agent to analyze external information related to training data provenance, model configurations, and infrastructure (SKILL.md).
  • Boundary markers: Explicit delimiters or instructions to ignore embedded prompts in processed data are not defined within this procedural guide.
  • Capability inventory: The skill utilizes tools such as Read, Grep, Glob, Bash, and WebFetch to gather and analyze system information (SKILL.md).
  • Sanitization: No automated sanitization steps are specified, as the skill provides a framework for manual or semi-automated expert review.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 02:01 AM
Security Audit — agent-trust-hub — ai-security-verification