review-hog-blind-spots-general
Pass
Audited by Gen Agent Trust Hub on Sep 6, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious patterns were identified. The skill is composed entirely of natural language instructions for an AI agent and lacks executable code, system command invocations, or network communications.
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted pull request chunks and findings from other automated perspectives, which creates a surface for indirect prompt injection. However, the risk is considered safe because the skill does not have any exploitable capabilities like tool execution, file system access, or network connectivity. 1. Ingestion points: PR-chunk review content and prior agent findings provided in the review prompt. 2. Boundary markers: None defined within the instruction set. 3. Capability inventory: No tools, shell scripts, or network capabilities are defined in the frontmatter or body. 4. Sanitization: None defined within the instruction set.
Audit Metadata