companify-cto
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests data from several project files that could potentially contain malicious instructions if the project files are sourced from untrusted parties.
- Ingestion points: The skill reads from
.companify/company-context.md,.companify/progresso.md,company/product.md, andcompany/business-model.mdas specified inSKILL.md. - Boundary markers: The instructions do not define delimiters or explicit "ignore instructions" warnings for the content read from these files.
- Capability inventory: The skill possesses the capability to write to the file system, specifically
company/technology.mdand.companify/progresso.md. - Sanitization: No sanitization or validation logic is defined for the content extracted from the context files before it is processed by the agent.
Audit Metadata