tool-foundation-sprint-brief
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes external information such as initiative descriptions and team rosters provided during invocation.
- Ingestion points: Inputs defined in SKILL.md include Initiative description, Team roster, and Logistics constraints.
- Boundary markers: The skill does not define specific delimiters for separating user-provided input from system instructions.
- Capability inventory: No sensitive capabilities were detected; the skill only generates text output and does not perform network operations, file writes, or command execution.
- Sanitization: The instructions do not specify validation or sanitization routines for the provided inputs.
- [SAFE]: The skill does not contain any code, external dependencies, or persistence mechanisms. Its behavior is restricted to formatting information into a markdown template based on vendor-provided examples.
Audit Metadata