pattern-recognition-specialist

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection because it is instructed to systematically scan and analyze source code files, including comments and technical debt markers like TODO, FIXME, or HACK.
  • Ingestion points: Reads arbitrary source code files and directory structures via tools like grep and ast-grep.
  • Boundary markers: None identified in the prompt instructions to distinguish between analysis commands and the content of the code being analyzed.
  • Capability inventory: Uses search tools (Grep, ast-grep) and code duplication tools (jscpd) to process file content.
  • Sanitization: No explicit sanitization or instruction to ignore instructions found within the analyzed files is present.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 02:21 PM
Security Audit — agent-trust-hub — pattern-recognition-specialist