ai-on-saas-poc-and-pilot-scoping

Pass

Audited by Gen Agent Trust Hub on Jul 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of markdown documentation and project management templates. It does not contain any scripts, executable code, or network-enabled commands.- [PROMPT_INJECTION]: The skill demonstrates a defensive security posture by explicitly instructing users to incorporate intentional adversarial cases, such as prompt injection and edge-of-policy scenarios, into the golden dataset used for pilot evaluation.- [SAFE]: While the skill defines a surface for processing external inputs (e.g., buyer requirements and dataset specifications), it lacks the capabilities necessary for exploitation, such as subprocess calls, network operations, or file-writing tools. Specifically for this ingestion surface:
  • Ingestion points: 'Required Inputs' section in SKILL.md.
  • Boundary markers: Absent.
  • Capability inventory: None detected.
  • Sanitization: Absent.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 28, 2026, 06:11 AM
Security Audit — agent-trust-hub — ai-on-saas-poc-and-pilot-scoping