research-docs-session

Pass

Audited by Gen Agent Trust Hub on Apr 4, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill consists entirely of markdown templates and workflow instructions. No executable scripts, binaries, or obfuscated content were found within the skill files.- [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface because it instructs the agent to ingest research from external 'official' and 'community' sources and incorporate them into local files. However, this is inherent to its primary purpose as a research tool.
  • Ingestion points: Research sources and assets mentioned in SKILL.md and references/research-docs-guide.md.
  • Boundary markers: Absent; the skill does not define specific delimiters to isolate research content from the agent's instructions.
  • Capability inventory: File system writes (creating and updating phase plans/reviews) and version control operations (git push as directed in SKILL.md).
  • Sanitization: No explicit sanitization or validation logic is provided for the content retrieved from external research sources.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 4, 2026, 01:44 PM
Security Audit — agent-trust-hub — research-docs-session