intended-vs-implemented

Pass

Audited by Gen Agent Trust Hub on Jul 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of markdown-based instructions defining a reasoning methodology. It does not include any executable scripts, binaries, or shell commands.
  • [DATA_EXFILTRATION]: No patterns for accessing sensitive files (e.g., credentials, SSH keys) or performing network requests were detected.
  • [PROMPT_INJECTION]: The skill describes a process for ingesting external project documentation and source code, which constitutes a surface for indirect prompt injection.
  • Ingestion points: Project documentation files (/documentation/*.md) and codebase files as cited in the 'Method' section.
  • Boundary markers: Not present.
  • Capability inventory: The skill provides no additional tools or capabilities such as network access, file writing, or command execution.
  • Sanitization: Not present. Given the lack of dangerous capabilities that could be abused, this processing surface does not pose a significant risk.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 4, 2026, 05:23 AM
Security Audit — agent-trust-hub — intended-vs-implemented