deep-modules

Pass

Audited by Gen Agent Trust Hub on Aug 28, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external codebase content to identify shallow modules, which constitutes a vulnerability surface where malicious instructions could be embedded in code comments or documentation.\n- Ingestion points: The skill ingests file content from a user-defined repository, directory, or subsystem scope during Step 2 of the Audit mode process.\n- Boundary markers: The instructions require subagents to ground findings in specific 'named signals' and adhere to a strict 'Output Schema,' which provides structural constraints against accidental instruction override.\n- Capability inventory: The skill utilizes the 'multi-agent-analysis' tool to orchestrate analysis by subagents across different code clusters.\n- Sanitization: The skill does not explicitly detail sanitization, escaping, or filtering of the ingested code content before it is relayed to subagents for analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 28, 2026, 11:12 AM
Security Audit — agent-trust-hub — deep-modules