tool-foundation-sprint-brief

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external information such as initiative descriptions and team rosters provided during invocation.
  • Ingestion points: Inputs defined in SKILL.md include Initiative description, Team roster, and Logistics constraints.
  • Boundary markers: The skill does not define specific delimiters for separating user-provided input from system instructions.
  • Capability inventory: No sensitive capabilities were detected; the skill only generates text output and does not perform network operations, file writes, or command execution.
  • Sanitization: The instructions do not specify validation or sanitization routines for the provided inputs.
  • [SAFE]: The skill does not contain any code, external dependencies, or persistence mechanisms. Its behavior is restricted to formatting information into a markdown template based on vendor-provided examples.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 06:21 AM
Security Audit — agent-trust-hub — tool-foundation-sprint-brief